Back to skill
Skillv0.1.5

VirusTotal security

Ai Podcast Creation · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

ReviewMay 1, 2026, 3:31 AM
Hash
5677ad21827058768cd25dc9745324518ad31ea55863e12e640ecd2680b281ed
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: ai-podcast-creation Version: 0.1.5 The skill bundle is classified as suspicious due to the broad `Bash(infsh *)` permission granted in `SKILL.md`. While the provided examples are benign and align with the stated purpose of AI podcast creation, this permission allows the AI agent to execute arbitrary commands starting with `infsh`. This creates a significant prompt injection vulnerability, as a malicious user could potentially craft prompts to coerce the agent into executing unintended `infsh` commands, which could lead to unauthorized actions or data exposure if the `infsh` CLI or its integrated applications have exploitable vulnerabilities. No explicit malicious intent such as data exfiltration, persistence, or obfuscation is observed within the provided files.
External report
View on VirusTotal