Back to skill
Skillv0.1.0
VirusTotal security
Proactive Claw Integrations · External malware reputation and Code Insight signals for this exact artifact hash.
Scanner verdict
SuspiciousApr 30, 2026, 5:18 AM
- Hash
- 4a81a3a84b0b63819ab21b6851082d756da41c6f2c785d44d26e42b6200f3923
- Source
- palm
- Verdict
- suspicious
- Code Insight
- Type: OpenClaw Skill Name: proactive-claw-integrations Version: 0.1.0 The bundle provides integrations for background task scheduling and third-party API access. It contains high-risk behaviors, including the installation of a persistent background daemon (launchd/systemd) via `scripts/install_daemon.sh` and an optional script (`scripts/optional/setup_clawhub_oauth.sh`) that fetches Google OAuth credentials from `https://clawhub.ai`. While the credential fetch includes security controls like SHA-256 pinning and the scripts (e.g., `scripts/cross_skill.py`) appear aligned with the stated purpose of context enrichment, the combination of persistence and remote credential provisioning represents a significant attack surface.
- External report
- View on VirusTotal
