AfrexAI Pitch Deck Reviewer
PassAudited by VirusTotal on May 12, 2026.
Findings (1)
The `SKILL.md` file contains a direct instruction for the OpenClaw agent to execute `clawhub install afrexai-proposal-gen` under the 'Related Tools' section. If the agent automatically executes commands found in `SKILL.md` without explicit user confirmation, this could lead to the unauthorized installation of another skill. While `clawhub install` is a legitimate platform command, instructing an agent to perform such an action without user consent represents a potential prompt injection vulnerability or an unauthorized action, classifying it as suspicious rather than benign. There is no evidence of intentional malicious behavior like data exfiltration or backdoors.
