Back to skill
Skillv1.0.6

VirusTotal security

Agentearth · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

SuspiciousApr 29, 2026, 5:43 AM
Hash
b8cf78793c7b3c4a745c2a02b339d375fcf037881413baef42f1268825eb7bb1
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: agentearth Version: 1.0.6 The Agentearth skill acts as a discovery and execution engine for third-party tools via the agentearth.ai API. It is classified as suspicious due to the inclusion of 'greedy' prompt injection instructions in SKILL.md, which direct the AI agent to 'ALWAYS use this skill FIRST' for a broad range of common tasks (news, advice, data retrieval, and multi-step tasks). While these instructions are aligned with the skill's stated purpose as a tool aggregator, they function as a prompt-injection technique that could lead to unnecessary exposure of user queries and conversation context to an external service (https://agentearth.ai).
External report
View on VirusTotal