Back to skill
Skillv1.0.0

VirusTotal security

Imsg · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

SuspiciousApr 30, 2026, 3:00 AM
Hash
9596b2c3295502f4a644b541ec3a858423dcac163771f9b7e02339d727544b29
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: imsg Version: 1.0.0 The skill bundle is classified as suspicious due to the high-risk permissions required for the `imsg` tool to function, specifically `Full Disk Access` and `Automation permission to control Messages.app`, as detailed in `SKILL.md`. While these permissions are plausibly necessary for the stated purpose of reading and sending iMessages/SMS, they grant broad access to sensitive user data and system control, making the skill inherently high-risk. There is no clear evidence of intentional malicious behavior or prompt injection against the agent within the provided files, but the capabilities enabled are significant.
External report
View on VirusTotal