Back to skill
Skillv0.1.0

VirusTotal security

Proactive Claw Integrations · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

SuspiciousApr 30, 2026, 5:18 AM
Hash
4a81a3a84b0b63819ab21b6851082d756da41c6f2c785d44d26e42b6200f3923
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: proactive-claw-integrations Version: 0.1.0 The bundle provides integrations for background task scheduling and third-party API access. It contains high-risk behaviors, including the installation of a persistent background daemon (launchd/systemd) via `scripts/install_daemon.sh` and an optional script (`scripts/optional/setup_clawhub_oauth.sh`) that fetches Google OAuth credentials from `https://clawhub.ai`. While the credential fetch includes security controls like SHA-256 pinning and the scripts (e.g., `scripts/cross_skill.py`) appear aligned with the stated purpose of context enrichment, the combination of persistence and remote credential provisioning represents a significant attack surface.
External report
View on VirusTotal