Back to skill
Skillv1.0.0

VirusTotal security

Credence · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

BenignApr 30, 2026, 4:10 AM
Hash
1e2a81652059716466d41ea1e4a9c30f23b6d5572c6c06cd9d8146e63c97f199
Source
palm
Verdict
benign
Code Insight
Type: OpenClaw Skill Name: credence Version: 1.0.0 The skill is designed to check MCP servers and AI tools against a public trust registry. It uses `curl` to fetch JSON data from `https://raw.githubusercontent.com/pestafford/credence-registry/main/registry/index.json`. The instructions in `SKILL.md` guide the AI agent to parse this data, report trust scores, and provide recommendations. All network calls are to a specific, public GitHub repository consistent with the skill's purpose. There is no evidence of data exfiltration, unauthorized command execution, persistence, or any other malicious intent. The prompt injection instructions are aligned with the stated, benign security-checking functionality.
External report
View on VirusTotal