Back to skill
Skillv0.1.1

VirusTotal security

OpenClaw Mobile Pair · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

SuspiciousApr 30, 2026, 6:10 AM
Hash
2108523ac52be0bb627180346ce7eb1b7a36c1d9d0e00df3acc21c522739d070
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: openclaw-mobile-pair Version: 0.1.1 The skill is classified as suspicious because it explicitly states it will 'automatically read the local gateway token' (sensitive credential access) and executes a PowerShell script (scripts/generate-mobile-pairing.ps1) with '-ExecutionPolicy Bypass'. Since the actual script content is missing from the provided files, the logic for handling the token and the potential for exfiltration to the user-provided BFF URL cannot be audited for safety.
External report
View on VirusTotal