Back to skill
Skillv1.10.3

VirusTotal security

laiye-doc-processing · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

SuspiciousApr 30, 2026, 4:44 AM
Hash
7218dfa080e6e79645b91eba1296c3accb254a2d754f29efa2246b26ecab5410
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: laiye-doc-processing Version: 1.10.3 The skill bundle provides instructions for an AI agent to install and operate the Laiye ADP CLI tool, which involves high-risk behaviors such as executing remote installation scripts via 'curl|bash' and 'npm' (references/examples.md). The instructions in SKILL.md guide the agent to manage sensitive API keys and upload local documents to remote endpoints (adp.laiye.com) for parsing and extraction. While these capabilities are aligned with the stated purpose of document processing, the automated installation of external binaries and the broad file/network access permissions represent a significant security risk and attack surface.
External report
View on VirusTotal