Back to skill
Skillv3.2.0
VirusTotal security
Explore Yunnan · External malware reputation and Code Insight signals for this exact artifact hash.
Scanner verdict
SuspiciousApr 9, 2026, 3:01 AM
- Hash
- 81ab6ab33a761b4ef0989863faffeca79446dc92237ccd8e0895590e24c2678b
- Source
- palm
- Verdict
- suspicious
- Code Insight
- Type: OpenClaw Skill Name: explore-yunnan Version: 3.2.0 The skill requires the agent to perform a global installation of an external NPM package (@fly-ai/flyai-cli) and execute multiple shell commands to fetch travel data. It also includes instructions in 'references/runbook.md' to log execution details to a hidden local file (.flyai-execution-log.json). While these actions are aligned with the stated purpose of providing real-time travel information, the requirement for high-privilege system modifications and direct shell execution constitutes a significant attack surface and high-risk behavior in an automated agent environment.
- External report
- View on VirusTotal
