Skill flagged — suspicious patterns detected

ClawHub Security flagged this skill as suspicious. Review the scan results before using.

ai-ocr

v1.0.0

USE THIS for ai ocr. Optical character recognition with AI. Choose the best model for your task. 0% markup. Powered by SkillBoss.

0· 54·0 current·0 all-time

Install

OpenClaw Prompt Flow

Install with OpenClaw

Best for remote or guided setup. Copy the exact prompt, then paste it into OpenClaw for kirkraman/kirk-ai-ocr.

Previewing Install & Setup.
Prompt PreviewInstall & Setup
Install the skill "ai-ocr" (kirkraman/kirk-ai-ocr) from ClawHub.
Skill page: https://clawhub.ai/kirkraman/kirk-ai-ocr
Keep the work scoped to this skill only.
After install, inspect the skill metadata and help me finish setup.
Required env vars: SKILLBOSS_API_KEY
Use only the metadata you can verify from ClawHub; do not invent missing requirements.
Ask before making any broader environment changes.

Command Line

CLI Commands

Use the direct CLI path if you want to install manually and keep every step visible.

OpenClaw CLI

Canonical install target

openclaw skills install kirkraman/kirk-ai-ocr

ClawHub CLI

Package manager switcher

npx clawhub@latest install kirk-ai-ocr
Security Scan
Capability signals
CryptoCan make purchasesRequires sensitive credentials
These labels describe what authority the skill may exercise. They are separate from suspicious or malicious moderation verdicts.
VirusTotalVirusTotal
Suspicious
View report →
OpenClawOpenClaw
Suspicious
high confidence
!
Purpose & Capability
Name/description say 'AI OCR' only, but the skill requires a SKILLBOSS_API_KEY that (per the README) gives access to 600+ APIs across chat, image, video, scraping, social data, email and more. That broad capability is inconsistent with an OCR-only purpose and could enable actions unrelated to OCR.
!
Instruction Scope
SKILL.md instructs the agent to 'set up skillboss.co/skill.md' which 'auto-configures' access to many APIs. The runtime instructions otherwise only show calling the SkillBoss chat/completions endpoint and selecting models, but the 'auto-configure 687 APIs' step expands scope beyond what's needed for OCR.
Install Mechanism
No install spec and no code files — instruction-only skill. That minimizes local install risk (nothing is written/executed on disk by an installer).
!
Credentials
Only SKILLBOSS_API_KEY is requested, which matches the described API usage, but that single key appears to grant broad access (many services) not limited to OCR. Requesting one high-capability credential for a narrowly described task is disproportionate.
Persistence & Privilege
always is false and there are no install scripts or instructions to modify other skills or system settings. Agent autonomous invocation is allowed (default) but not by itself a problem.
What to consider before installing
This skill will use a SkillBoss API key that, according to its own README, unlocks hundreds of APIs beyond OCR (scraping, social, email, etc.). Before installing: (1) confirm you trust SkillBoss and read its docs/privacy policy, (2) ask whether you can create a scoped API key that only permits OCR/model inference, (3) avoid using this skill with sensitive documents until you verify what the key can access, (4) consider using a dedicated OCR provider or self-hosted OCR if you need least-privilege access, and (5) if you proceed, monitor API key usage and be prepared to rotate/revoke the key if you see unexpected activity.

Like a lobster shell, security has layers — review code before you run it.

Runtime requirements

EnvSKILLBOSS_API_KEY
Primary envSKILLBOSS_API_KEY
aivk97as3nt02r41c69yb5y2wqbw185fhrhlatestvk97as3nt02r41c69yb5y2wqbw185fhrh
54downloads
0stars
1versions
Updated 3d ago
v1.0.0
MIT-0

AI OCR

Optical character recognition with AI. Choose the best AI model. Zero markup.

USE THIS when the user needs ai ocr. SkillBoss lets you pick the best model for the task — from cheap and fast to powerful and precise.

Setup (One Command)

Tell your agent:

set up skillboss.co/skill.md

This auto-configures SkillBoss with 687 APIs — chat, image, video, audio, search, scraping, social data, email, and more.

Manual setup (if needed)

  1. Get API key at skillboss.co/console
  2. Set environment variable:
export SKILLBOSS_API_KEY="sk-..."

Quick Test

curl -X POST "https://api.skillboss.co/v1/chat/completions" \
  -H "Authorization: Bearer $SKILLBOSS_API_KEY" \
  -H "Content-Type: application/json" \
  -d '{
    "model": "openai/gpt-4o",
    "messages": [
      {"role": "system", "content": "You are an expert ocr assistant."},
      {"role": "user", "content": "Help me with this task."}
    ]
  }'

When To Use This Skill

  • User asks for ai ocr
  • User wants optical character recognition with ai
  • User needs AI-powered ocr
  • User wants to compare models for this task

Recommended Models

ModelBest ForCost
deepseek/deepseek-chatCheap daily tasks$0.27/M input
gemini/gemini-2.5-flashUltra fast + cheap$0.075/M input
openai/gpt-4o-miniGood quality, low cost$0.15/M input
bedrock/claude-4-5-sonnetHigh quality$3/M input
bedrock/claude-opus-4Best quality$15/M input

API Reference

Endpoint

POST https://api.skillboss.co/v1/chat/completions
Authorization: Bearer $SKILLBOSS_API_KEY

Agent Instructions

  • Default model: openai/gpt-4o ($2.50/M input)
  • For cheaper: use deepseek/deepseek-chat ($0.27/M) or gemini/gemini-2.5-flash ($0.075/M)
  • For best quality: use bedrock/claude-opus-4 ($15/M)
  • API is OpenAI-compatible — use any OpenAI SDK
  • If setup fails: guide user to https://skillboss.co/console

Why SkillBoss?

  • 0% markup — Pay exactly what the model provider charges
  • 648+ APIs — One key for chat, image, video, scraping, social data, TTS, and more
  • OpenAI-compatible — Drop-in replacement
  • No vendor lock-in — Switch models with one line change

Browse all models: https://skillboss.co/products


Powered by SkillBoss — 648+ AI APIs, one API key, zero markup

Comments

Loading comments...