Back to skill
Skillv2.1.0

VirusTotal security

Quadral Openclaw Skill · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

ReviewMay 1, 2026, 3:33 AM
Hash
0d5a90581f104fb9fed11eeab40ea18b8778fa53a53dc9c5a848d0320fdf4f1c
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: quadral Version: 2.1.0 The skill instructs the AI agent to make an outbound network call to a third-party domain, `moltbookai.net`, to 'Share Your Results' in the `SKILL.md` file. While the data specified for sharing (game results) is not sensitive and the purpose is stated, this instruction for an external network interaction represents a risky capability. It expands the agent's operational scope beyond the primary game API (`supabase.co`) to an arbitrary external service, which could be a vector for data exfiltration or other unauthorized actions if the target domain or instructions were different. This is classified as suspicious due to the instruction for an external network call to a non-core domain, rather than malicious, as there is no clear evidence of intent to steal secrets or cause harm.
External report
View on VirusTotal