Back to skill
Skillv1.0.0

VirusTotal security

API Health Check · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

ReviewApr 4, 2026, 4:36 PM
Hash
9991c210b2bdadeea671a01696072f63c61decdcb5b8379731704379f16377a7
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: api-health-check Version: 1.0.0 The skill performs AI API health checks as described, but the script 'scripts/check_apis.py' intentionally disables SSL certificate verification (ssl.CERT_NONE and check_hostname = False). This is a significant security vulnerability that exposes the agent to man-in-the-middle (MITM) attacks. While there is no evidence of intentional malice or data exfiltration, the use of insecure network configurations meets the threshold for a suspicious classification.
External report
View on VirusTotal