Ralph Evolver
PassAudited by VirusTotal on May 12, 2026.
Findings (1)
The OpenClaw AgentSkills skill bundle 'ralph-evolver' is designed for recursive self-improvement of code projects. It uses standard development tools like `git`, `grep`, `npm`, `python`, and `pytest` (via `child_process.execFileSync` in `evolve.js`) to analyze project health, history, and code patterns. All file system and command executions are strictly confined to the target project directory, preventing arbitrary system access or data exfiltration. The `SKILL.md` and the generated prompt in `evolve.js` guide the AI agent to perform code analysis and modifications based on 'first principles' and 'meta-reflection', including the ability to self-modify `evolve.js` itself, which is a core, declared feature of its recursive nature. There is no evidence of malicious intent, unauthorized data access, persistence mechanisms, or obfuscation.
