Back to skill
Skillv1.0.0

VirusTotal security

Usdc Hackathon · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

BenignApr 29, 2026, 3:25 AM
Hash
d26d15d8af922e4d16c959a7dae4f44f0b0304901b250fae76694dc0913e314a
Source
palm
Verdict
benign
Code Insight
Type: OpenClaw Skill Name: usdc Version: 1.0.0 The skill bundle is classified as benign. It provides comprehensive instructions for an AI agent to participate in a hackathon, with a strong emphasis on security best practices. Key indicators include explicit defensive prompt injection instructions in `SKILL.md` and track files (e.g., `tracks/COMMERCE.md`) that warn the agent not to execute untrusted code or send credentials to external endpoints. It repeatedly stresses 'testnet-only' usage and warns against mainnet interaction. While the agent is instructed to read/write its own GitPad password to `~/.gitpad_password`, this is for local credential management for the stated purpose of code submission and not for exfiltration, and is accompanied by warnings about password security. All network calls are to the legitimate Moltbook platform or restricted to public HTTPS domains for verification, with strict warnings against sending secrets to third parties.
External report
View on VirusTotal