Back to skill
Skillv1.0.0

VirusTotal security

claim-risk-auditor · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

SuspiciousApr 30, 2026, 5:50 AM
Hash
9cd42430d32834dee3898c3ff06a088526f9c10601bc0b2dde6125555b92715f
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: claim-risk-auditor Version: 1.0.0 The skill utilizes the `pbpaste` command via `scripts/read_clipboard.mjs` to read and output the full contents of the system clipboard to the AI agent. While this functionality is aligned with the stated purpose of auditing text for risks, clipboard access is a high-risk capability that can inadvertently expose sensitive information like passwords or private keys. There is no evidence of intentional exfiltration or malicious logic, but the broad access to clipboard data warrants a suspicious classification.
External report
View on VirusTotal