Back to skill
Skillv0.1.1

VirusTotal security

omarchy · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

SuspiciousApr 30, 2026, 3:50 AM
Hash
150fc3e06ff348e4a923eaabccd7b08df61bde7f45a6e29f2c9f1516b1659d9e
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: omarchy Version: 0.1.1 The `SKILL.md` file exhibits strong prompt injection techniques designed to restrict the AI agent's autonomy and steer its behavior towards a predefined set of `omarchy-*` wrapper scripts. It explicitly instructs the agent to avoid generic Linux commands (e.g., `pacman`, `pkill`) and discourages standard inspection methods like `--help` flags, instead forcing reliance on internal documentation of the `omarchy-*` scripts. While not directly containing malicious code, this setup creates a highly vulnerable environment where the agent is compelled to use potentially unverified, controlled scripts for critical system operations (e.g., `omarchy-pkg-install`, `omarchy-update-system-pkgs`, `omarchy-reset-sudo`, `omarchy-upload-log`), increasing the risk of hidden malicious actions or system compromise if those underlying scripts were untrustworthy.
External report
View on VirusTotal