Back to skill
Skillv1.0.0

VirusTotal security

AI-Friendly Structured Writer · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

SuspiciousApr 30, 2026, 4:45 AM
Hash
e1183eadcdfd51dfdacf46b6e98f560f46e9812045db9a3443c9587235d4b0ad
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: geo-structured-writer Version: 1.0.0 The skill bundle is suspicious due to a potential shell injection vulnerability. The `SKILL.md` file instructs the AI agent to execute a Python script (`scripts/structure_content.py`) with command-line arguments, including `--input` and `--query`. If the AI agent constructs these arguments from unsanitized user input, it could allow an attacker to inject arbitrary shell commands, leading to remote code execution. While the Python script itself is benign and incomplete, the method of its invocation by the agent presents a significant security risk.
External report
View on VirusTotal