Back to skill
Skillv1.1.0
VirusTotal security
configure OpenClaw · External malware reputation and Code Insight signals for this exact artifact hash.
Scanner verdict
SuspiciousApr 30, 2026, 5:39 AM
- Hash
- f15078cfc74f7db8ad0f31befc81ada707a17751f03d9fdb2f7ae1fd07c66d47
- Source
- palm
- Verdict
- suspicious
- Code Insight
- Type: OpenClaw Skill Name: configure-openclaw Version: 1.1.0 The skill bundle 'configure-openclaw' provides the AI agent with the capability to modify the system's primary configuration file (~/.openclaw/openclaw.json), which governs critical security and operational settings such as authentication tokens, channel permissions, and the enablement of shell commands (e.g., 'commands.bash'). While SKILL.md includes defensive instructions—such as mandatory user confirmation, minimal patching, and validation via 'openclaw doctor'—the broad authority to alter the application's core logic and security posture constitutes a high-risk capability. No evidence of intentional malice was found, but the access level provided is significant.
- External report
- View on VirusTotal
