Back to skill
Skillv1.0.0

VirusTotal security

AgentGen — HTML to PDF & Image · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

SuspiciousApr 30, 2026, 5:00 AM
Hash
420ed61f45d73e7297a81d46612af75cc2a2acb78d32cfa5290e862abc9efe54
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: agentgen Version: 1.0.0 The skill is classified as suspicious due to the `agentgen upload` command, which allows uploading local files to a third-party service (agent-gen.com) where they become publicly accessible for 24 hours. While this feature is explicitly documented in SKILL.md as part of the workflow, the inherent risk of uploading arbitrary local files to a public URL, even if temporary, makes it a high-risk capability that could lead to accidental data exposure or misuse, thus warranting a 'suspicious' classification rather than 'benign'.
External report
View on VirusTotal