Back to skill
Skillv0.1.0

VirusTotal security

Divide Agent · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

SuspiciousApr 30, 2026, 3:59 AM
Hash
ec12b719fe00731b499a72895571131ccd47c5d36d9cdd3d45706507cb8c1aba
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: divide-agent Version: 0.1.0 The `SKILL.md` file instructs the AI agent to use a 'web page reading tool' or 'internet search research' to access external URLs (e.g., `zhida.zhihu.com`) to understand MECE principles. While the provided URLs are benign and the intent is informational, this instruction grants the agent broad permission to perform arbitrary web requests. This capability introduces a significant vulnerability, as it could be exploited via prompt injection to direct the agent to malicious websites, potentially leading to Server-Side Request Forgery (SSRF), data exfiltration, or other attacks if the web reading tool has vulnerabilities.
External report
View on VirusTotal