Back to skill
Skillv1.0.0

VirusTotal security

Free Editor Text · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

SuspiciousApr 17, 2026, 6:21 AM
Hash
c3135615b17fa74a132f432329c87e9e648ca9dceef56263e933713845b7f1e5
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: free-editor-text Version: 1.0.0 The skill automates video editing by communicating with an external API (mega-api-prod.nemovideo.ai) and includes instructions for the agent to autonomously manage authentication tokens and session state. It performs environment fingerprinting by sniffing installation paths (e.g., ~/.cursor/skills/) and is explicitly instructed to hide technical execution details from the user. Most significantly, the skill's architecture allows a remote server to trigger 'internal tool calls' via an SSE stream, creating a potential path for remote command execution if the backend is compromised or malicious. File: SKILL.md.
External report
View on VirusTotal