Back to skill
Skillv1.0.0

VirusTotal security

MidOS MCP — Knowledge OS for AI Agents · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

SuspiciousApr 30, 2026, 5:05 AM
Hash
27e71e7a59b2deb4188502823555cf07dfecdc4298ab5c5ad84432af5bd1f781
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: midos-mcp Version: 1.0.0 The skill bundle is suspicious due to the inclusion of highly privileged execution tools: `maker_run_bash`, `maker_read_file`, and `maker_write_file` as described in `SKILL.md`. These tools grant the AI agent the ability to execute arbitrary shell commands, read any file, and write any file on the host system. While there is no explicit malicious instruction or prompt injection attempt within the provided `SKILL.md` itself, these capabilities represent a critical vulnerability, enabling potential remote code execution and data exfiltration if the agent is compromised (e.g., via a malicious user prompt).
External report
View on VirusTotal