Back to skill
Skillv1.0.0
VirusTotal security
Self Improving Agent 3.0.6 · External malware reputation and Code Insight signals for this exact artifact hash.
Scanner verdict
ReviewMar 25, 2026, 1:26 AM
- Hash
- ed40c8dfa025451b03ccaee68c479199b3417326cdbca9272eb0149fbc5f93f9
- Source
- palm
- Verdict
- suspicious
- Code Insight
- Type: OpenClaw Skill Name: self-improving-agent-3-0-6 Version: 1.0.0 The skill bundle implements a 'self-improvement' loop that instructs the agent to modify its own persistent instruction files (e.g., SOUL.md, AGENTS.md) based on session interactions, which creates a high risk for persistent prompt injection. Furthermore, SKILL.md references several shell scripts (scripts/activator.sh, scripts/error-detector.sh, and scripts/extract-skill.sh) that are not included in the provided files, preventing a full security review of the execution logic. The requested capabilities, including broad filesystem access and inter-session communication (sessions_history, sessions_send), are powerful and could be easily repurposed for unauthorized data access or persistence.
- External report
- View on VirusTotal
