Verified Agent Identity

PassAudited by VirusTotal on May 13, 2026.

Findings (1)

The skill bundle provides a decentralized identity (DID) management toolkit for AI agents using the iden3 protocol. It implements legitimate cryptographic operations, including Ethereum-based identity creation, challenge signing, and handling HTTP 402 payment flows. Security is addressed through isolated storage (~/.openclaw/billions/), optional AES-256-GCM at-rest encryption for private keys (scripts/shared/storage/crypto.js), and detailed instructions (SKILL.md) that enforce human-in-the-loop confirmation for payments and attestations. No evidence of data exfiltration, unauthorized execution, or malicious prompt injection was found.