OpenClaw 2026.3.2 Release: Production Secrets, PDF Tool, and Safer Defaults

What Changed in OpenClaw 2026.3.2
OpenClaw 2026.3.2 is a feature release focused on security, tooling, and developer experience. The update makes several practical improvements to how agents handle sensitive data, process documents, and operate safely by default.
Key Features and Changes
Production-Grade Secrets System
- SecretRef support now covers 64 credential targets including Stripe, Slack, and GitHub
- Unresolved secret references now fail fast instead of breaking mid-run
- New workflow:
openclaw secrets audit→ fix →openclaw secrets reloadwithout restarting the gateway
First-Class PDF Tool
- Native support for Anthropic and Google models
- Extraction fallback for other models
- Configurable page and size limits
- Built-in routing and validation
Practical applications mentioned: summarizing contracts by party, comparing research paper methodologies, and creating structured response outlines from RFPs.
Unified Outbound Adapter
- Discord, Slack, WhatsApp, Zalo, and Telegram now share a single
sendPayloadadapter - Telegram streaming defaults to "partial" instead of "off" for new setups
- Live typing previews work out of the box with zero configuration
Safer Defaults for New Installs
- New installations default
tools.profileto "messaging" — no filesystem or shell access unless explicitly opted in - ACP dispatch enabled by default
- Plugin HTTP routes now require explicit authentication
For Plugin/Skill Builders
session_startandsession_endhooks now includesessionKey- New hook events:
message:transcribedandmessage:preprocessed api.runtime.stt.transcribeAudioFile(...)— transcribe local audio through configured providerschannelRuntimeexposed onChannelGatewayContext— build new channels without internal imports
Other Notable Updates
openclaw config validate --json— lint configuration before startup- MiniMax-M2.5-highspeed is now first-class — cheaper fast model option for rote tasks
- Ollama embeddings work for memory search — long-term memory can stay fully local
- Diff tool can export as PDF with quality/scale controls
The release addresses common pain points for developers integrating OpenClaw into production workflows, particularly around credential management and document processing.
📖 Read the full source: r/openclaw
👀 See Also

Claude Code System Prompts v2.1.51/52: New Prompts, SDK Updates, and GA Features
Claude Code system prompts v2.1.51 and v2.1.52 add six new prompts, update SDK/API references across seven languages, and promote code execution and memory to GA. The Python Agent SDK has been reworked with async changes and new interfaces.

BMW Dealership Revokes Buyback Offer After AI Chatbot Mistake, Precedent from Air Canada Case
A Toronto BMW dealership revoked a buyback offer generated by its AI chatbot, sparking legal questions. The Air Canada precedent holds companies liable for chatbot errors.

Claude Cowork unifies slash commands and skills under single concept
Claude Cowork has unified slash commands and skills under a single concept called 'skills', eliminating separate headers in the / menu. Legacy commands continue to function as before.

Claude Code source code reportedly leaked, revealing agent architecture details
The source code for Claude Code, Anthropic's AI coding agent, appears to have been leaked, containing the full repository with system prompts, agent loop implementation, and tool calling infrastructure.