Back to skill
Skillv0.1.1

VirusTotal security

Claude Code Delegate · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

SuspiciousApr 29, 2026, 5:03 AM
Hash
191d93fa932edf30073bcf419c739f9196b50c620ee59fb00175f849b9d9e91b
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: claude-code-delegate Version: 0.1.1 The skill delegates programming tasks to the Claude Code CLI using the `--permission-mode bypassPermissions` flag, which grants the tool full filesystem access (SKILL.md). While the README.md and SKILL.md provide extensive security warnings and a 'write-guard' mitigation strategy to protect sensitive platform paths (e.g., ~/.openclaw/), the inherent capability to bypass permissions and execute arbitrary shell commands via a CLI constitutes a high-risk behavior. No evidence of malicious intent or data exfiltration was found, but the broad permissions required for operation fall under the threshold for suspicious activity.
External report
View on VirusTotal