Back to skill
Skillv1.0.0

VirusTotal security

netmiko ssh · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

SuspiciousApr 30, 2026, 4:34 AM
Hash
a9ff36bbc87514d70775444e9063d8a93d65f57c696a235e407cf7b8a7d37a50
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: ssh-netmiko Version: 1.0.0 The skill is classified as suspicious due to its high-risk capabilities and supply chain implications. The `execute_ssh_command` tool, defined in `SKILL.md` and `references/TOOLS.md`, allows arbitrary command execution on remote systems, which is a significant vulnerability if misused. Additionally, `SKILL.md` instructs the AI agent to install and update an external tool (`mcp2skill`) from a GitHub URL (https://github.com/fenwei-dev/mcp2skill), posing a supply chain risk if the repository were compromised. While there is no clear evidence of intentional malicious behavior (e.g., local data exfiltration, backdoors), these capabilities and instructions enable potential attacks.
External report
View on VirusTotal