Back to skill
Skillv1.0.3

VirusTotal security

Voice messaging setup · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

BenignMay 1, 2026, 4:59 AM
Hash
c37159d378fd584bda051860fcffbee0b5009bfea52e4cc88e2fe3f151e5a220
Source
palm
Verdict
benign
Code Insight
Type: OpenClaw Skill Name: voice-stt-tts Version: 1.0.3 The OpenClaw AgentSkills bundle 'voice-stt-tts' is designed to set up Speech-to-Text (STT) and Text-to-Speech (TTS) capabilities. It installs the legitimate `faster-whisper` Python library in a virtual environment and creates a `transcribe.py` script, both via `bash` commands embedded in `SKILL.md`. The script itself is straightforward, processing audio files for transcription without any suspicious system calls or network activity. The configuration instructions for OpenClaw are standard for integrating such a service. There is no evidence of data exfiltration, persistence mechanisms, unauthorized remote control, or prompt injection attempts against the agent to perform malicious actions. The use of `{{MediaPath}}` as an argument placeholder is standard for OpenClaw and does not indicate malicious intent from this skill, though it highlights a general platform vulnerability if argument sanitization is insufficient.
External report
View on VirusTotal