Back to skill
Skillv1.1.0

VirusTotal security

KitchenOwl API · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

BenignApr 30, 2026, 5:30 AM
Hash
be927f18f92cd10684129bd9cd0aee234de67ea3319e757b3493f1c366e6022f
Source
palm
Verdict
benign
Code Insight
Type: OpenClaw Skill Name: kitchenowl-api Version: 1.1.0 The kitchenowl-api skill is a legitimate CLI wrapper for interacting with KitchenOwl instances. It facilitates authentication, session management, and API requests (REST/GraphQL) using curl and jq, with tokens stored locally in ~/.config/kitchenowl-api/session.json. While it exhibits some minor security vulnerabilities—such as using the insecure (-k) flag in the probe command and accepting passwords via command-line arguments—these behaviors are aligned with its stated purpose for self-hosted service interaction and do not show evidence of malicious intent or data exfiltration.
External report
View on VirusTotal