Heartbeat

Security checks across malware telemetry and agentic risk

Overview

Heartbeat is a documentation-only helper for designing OpenClaw heartbeat files, with disclosed local preference storage and no evidence of exfiltration or unsafe automation.

Safe to install if you want help drafting HEARTBEAT.md behavior. Review anything it creates under ~/heartbeat/, avoid storing secrets there, and manually confirm any generated cron or heartbeat changes before enabling them.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Low
Confidence
72% confidence
Finding
The setup instructs the agent to persist state to a local path without an explicit warning that user data will be written. Silent local writes can violate user expectations, create unintended retention of preference data, and normalize file modifications without informed consent, which is risky even when the data is low sensitivity.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal