Back to skill
Skillv1.0.0

VirusTotal security

Twinify · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

SuspiciousApr 29, 2026, 3:31 AM
Hash
57c715b2b4a5ab5a1d8457f5f8d4de3d39a2c4a8be2447c24de5f2d773b7173b
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: twinify Version: 1.0.0 This skill is classified as suspicious due to its inherent high-risk data handling capabilities. It processes highly sensitive personal WhatsApp chat history and explicitly states in `SKILL.md` that this data will be transmitted to an external LLM API for analysis. While the skill includes ethical instructions for the agent to confirm user consent and the `scripts/parse_chat.py` file itself does not contain malicious code or unauthorized network activity, the fundamental operation of sending private chat data to a third-party LLM constitutes a significant privacy risk, even if it's aligned with the stated purpose. No evidence of intentional malicious behavior (e.g., unauthorized exfiltration, persistence, or prompt injection against the agent for harmful objectives) was found.
External report
View on VirusTotal