Back to skill
Skillv1.0.0
VirusTotal security
MidOS MCP — Knowledge OS for AI Agents · External malware reputation and Code Insight signals for this exact artifact hash.
Scanner verdict
SuspiciousApr 30, 2026, 5:05 AM
- Hash
- 27e71e7a59b2deb4188502823555cf07dfecdc4298ab5c5ad84432af5bd1f781
- Source
- palm
- Verdict
- suspicious
- Code Insight
- Type: OpenClaw Skill Name: midos-mcp Version: 1.0.0 The skill bundle is suspicious due to the inclusion of highly privileged execution tools: `maker_run_bash`, `maker_read_file`, and `maker_write_file` as described in `SKILL.md`. These tools grant the AI agent the ability to execute arbitrary shell commands, read any file, and write any file on the host system. While there is no explicit malicious instruction or prompt injection attempt within the provided `SKILL.md` itself, these capabilities represent a critical vulnerability, enabling potential remote code execution and data exfiltration if the agent is compromised (e.g., via a malicious user prompt).
- External report
- View on VirusTotal
