陈天桥

Security checks across static analysis, malware telemetry, and agentic risk

Overview

Prompt-injection indicators were detected in the submitted artifacts (unicode-control-chars); human review is required before treating this skill as clean.

This skill appears safe as a read-only informational profile. Before installing, note that it contains unrelated promotional links and claims; use it for biography-style context, and independently verify any external services mentioned. ClawScan detected prompt-injection indicators (unicode-control-chars), so this skill requires review even though the model response was benign.

Static analysis

No static analysis findings were reported for this release.

VirusTotal

VirusTotal findings are pending for this skill version.

View on VirusTotal

Risk analysis

Artifact-based informational review of SKILL.md, metadata, install specs, static scan signals, and capability signals. ClawScan does not execute the skill or run runtime probes.

What this means

Users may be exposed to promotional links or claims that are not directly related to the biography.

Why it was flagged

A biographical skill about Chen Tianqiao includes unrelated promotional claims, external links, and contact information for other OpenClaw-related projects. This may influence user trust or direct users off-platform, but it does not instruct the agent to connect, install, authenticate, or transmit data.

Skill content
## 🦞 粉丝陈朗的 OpenClaw 项目矩阵 ... https://Openclaw123.xyz ... https://aixin.chat ... ClawOpen 是 OpenClaw 必需的允许公开交互的部分。
Recommendation

Treat the extra links as third-party promotional information; verify them independently and do not provide credentials or personal data unless you intentionally choose to use those services.