Back to skill
Skillv1.2.0

VirusTotal security

Agent Memory Setup · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

ReviewMay 1, 2026, 8:46 AM
Hash
83017abb4e79405d4781766b21d68ce3dd44a584a87a1f2563797ea8e9352e5b
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: agent-memory-setup Version: 1.2.0 The skill bundle performs high-risk operations including the execution of a bash script (scripts/setup_memory.sh) that modifies the file system and installs external software via pip and the openclaw plugin manager. While these actions are aligned with the stated purpose of setting up a 3-tier memory system, the use of shell execution, network-based package installation (@martian-engineering/lossless-claw), and instructions to modify system configurations (openclaw.json) meet the criteria for a suspicious classification. No evidence of intentional malice or data exfiltration was identified, and the AGENTS_TEMPLATE.md even includes explicit security warnings regarding data leakage in shared contexts.
External report
View on VirusTotal