Back to skill
Skillv3.0.0

VirusTotal security

Persistent Memory · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

ReviewMay 2, 2026, 4:11 AM
Hash
afcc29f12535540a74e95934fb3f80b3f166a86e4bafc7d7e958c4c1775fda6c
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: persistent-memory Version: 3.0.0 The skill is classified as suspicious due to its capability to modify the core OpenClaw application configuration (`~/.openclaw/openclaw.json`) and execute `openclaw` CLI commands (e.g., `openclaw gateway restart`) via `scripts/unified_setup.sh` and `scripts/configure_openclaw.py`. While the stated purpose is benign (to improve agent compliance by making OpenClaw index critical workspace files like SOUL.md and AGENTS.md), these actions involve significant system modification and shell execution. This presents a high-privilege capability that, if exploited or misused, could lead to vulnerabilities, even though there is no clear evidence of intentional malicious behavior (e.g., data exfiltration, backdoors, or malicious prompt injection) within the provided code.
External report
View on VirusTotal