Back to skill
Skillv2.1.0

VirusTotal security

Erp Integration Analysis · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

SuspiciousApr 29, 2026, 3:31 AM
Hash
5777156a56cb997e6b34e04612e6d4135acf855024f68634aa2b490ef538ff24
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: erp-integration-analysis Version: 2.1.0 The skill declares 'filesystem' and 'network' permissions in `claw.json`, which are broad capabilities. However, the provided Python code in `SKILL.md` does not explicitly demonstrate any usage of these permissions (e.g., reading/writing files, making network requests). While these permissions could be plausibly needed for an 'ERP integration analysis' skill (e.g., reading configuration files, connecting to ERP APIs), their declaration without corresponding explicit usage in the code makes the skill suspicious, as it introduces a potential attack surface for an AI agent susceptible to prompt injection to misuse these permissions.
External report
View on VirusTotal