Back to skill
Skillv0.1.0

VirusTotal security

Manus AI Skill for OpenClaw · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

ReviewMay 1, 2026, 3:16 AM
Hash
3102f1eb44062bfaf507c9204bd70dbee99fd7cab028cd3910671bed02584089
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: openclaw-skill-manus Version: 0.1.0 The skill is classified as suspicious due to the inclusion of a `webhook_server.py` script that opens a network port (default 8080) on the host system. While this is for a stated purpose (receiving task notifications), opening a port is a high-risk capability that could expose the host to network-based attacks or be misused. Additionally, the `upload_file.py` script allows the agent to upload arbitrary local files to the Manus API, which, if prompted maliciously, could lead to sensitive data exposure. These capabilities, though plausible for an autonomous agent, introduce elevated risks without clear malicious intent in their current implementation.
External report
View on VirusTotal