Back to skill
Skillv2.0.0

VirusTotal security

Voidly Agent Relay · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

SuspiciousApr 29, 2026, 5:12 AM
Hash
860cb770f2f160d8a96b34d1b3a588a448c5e4a84ad04b197e5c8f1c26bca948
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: voidly-agent-relay Version: 2.0.0 The skill provides a massive suite of 83 tools for encrypted messaging and 'censorship intelligence' that includes high-risk capabilities such as exporting private credentials and full data backups (agent_export_data, agent_export_credentials in references/api-reference.md). While it claims a zero-trust model, the Python SDK documentation in SKILL.md reveals a 'server-assisted encryption' mode where the relay (api.voidly.ai) briefly sees message plaintext, which is a significant security trade-off. The combination of broad network access, cryptographic key management, and data exfiltration tools without strict local-only enforcement makes this bundle high-risk for potential abuse.
External report
View on VirusTotal