Back to skill
Skillv2.0.4

VirusTotal security

X Smart Read · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

BenignApr 30, 2026, 4:18 AM
Hash
ed3a7bdd54ef6130faa09d96fe92fefe5b1368b7b083a39b248bc587e52d0eac
Source
palm
Verdict
benign
Code Insight
Type: OpenClaw Skill Name: x-smart-read Version: 2.0.4 The OpenClaw AgentSkills skill bundle for X (Twitter) analytics appears benign. All Python scripts (`x_bookmarks.py`, `x_briefing.py`, `x_common.py`, `x_mentions.py`, `x_read.py`, `x_setup.py`, `x_timeline.py`, `x_user.py`) use the `tweepy` library for X API interactions and manage local data within the skill's designated `~/.openclaw/skills-config/x-twitter/` directory. The `SKILL.md` and `AGENTS.md` files contain extensive instructions for the AI agent, all focused on cost optimization and responsible API usage, with no evidence of prompt injection attempts to subvert the agent's behavior. Credentials are handled securely via `~/.openclaw/.env` or interactive prompts, and `config.json` permissions are set to `0o600`. There is no evidence of data exfiltration, malicious execution, persistence mechanisms, or obfuscation.
External report
View on VirusTotal