Skill flagged — suspicious patterns detected

ClawHub Security flagged this skill as suspicious. Review the scan results before using.

Setup

v1.0.0

Configure OpenClaw installations with optimized settings, channel setup, security hardening, and production recommendations.

2· 780·5 current·5 all-time
byIván@ivangdavila
MIT-0
Download zip
LicenseMIT-0 · Free to use, modify, and redistribute. No attribution required.
Security Scan
VirusTotalVirusTotal
Suspicious
View report →
OpenClawOpenClaw
Benign
high confidence
Purpose & Capability
The name/description match the content: files contain configuration recommendations for channels, agents, gateway, memory, tools, automation and security. Nothing in the bundle asks for unrelated credentials or binaries, and no hidden functionality is present.
Instruction Scope
SKILL.md and the included docs instruct the user to run OpenClaw CLI commands (e.g., `openclaw onboard --install-daemon`, `openclaw doctor`) and to edit config files under ~/.openclaw; those are appropriate for a setup guide. The docs also include placeholders and examples referencing many environment variables/tokens (GATEWAY_TOKEN, TELEGRAM_BOT_TOKEN, OPENAI_API_KEY, etc.). The skill does not itself read or exfiltrate anything, but running the recommended commands or applying suggested settings (daemon install, gateway binding, enabling exec full access) will change system state and can expose services if misconfigured — the docs sometimes recommend insecure options in certain sections (e.g., `exec.security:

Like a lobster shell, security has layers — review code before you run it.

latestvk978gs2vmebks6m1h3wmrj06sd8121sx

License

MIT-0
Free to use, modify, and redistribute. No attribution required.

Comments