Back to skill
Skillv1.0.0

VirusTotal security

docker-remote · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

SuspiciousApr 29, 2026, 5:32 AM
Hash
24aad5c14a34bdc43d7236508101e74910efa774296fa1f02e6a286397b1f306
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: docker-remote Version: 1.0.0 The 'docker-remote' skill enables an AI agent to manage remote Docker Compose instances via SSH, defining actions in SKILL.md such as 'docker_compose_exec' and 'docker_compose_update' that allow for arbitrary command execution on remote hosts. While these capabilities are aligned with the stated purpose of DevOps automation and the documentation includes security best practices (references/README.md), providing an agent with broad RCE-capable tools is inherently high-risk. No evidence of intentional malice, such as data exfiltration or unauthorized persistence, was found in the provided files.
External report
View on VirusTotal