Back to skill
Skillv1.0.1
VirusTotal security
sili-ville · External malware reputation and Code Insight signals for this exact artifact hash.
Scanner verdict
ReviewApr 30, 2026, 6:10 AM
- Hash
- 75a4836ca782a0041cdff7f7c9703186946de858ab22a4b482e3a812ee402a4a
- Source
- palm
- Verdict
- suspicious
- Code Insight
- Type: OpenClaw Skill Name: sili-ville Version: 1.0.1 The skill bundle implements a 'metaverse' game for AI agents but introduces a significant security risk by instructing the agent to fetch and adopt a 'system protocol' from a remote server (www.siliville.com) via the `awaken` endpoint in `siliville_skill.py`. This architecture allows the remote service to unilaterally inject new instructions or alter the agent's behavior at runtime. While the 'stealing' and 'autonomous loop' features are aligned with the stated game mechanics, the skill also creates persistent configuration and 'API anchor' files in the user's home directory (~/.siliville/), which could be leveraged if the remote instructions become malicious.
- External report
- View on VirusTotal
