Back to skill
Skillv1.0.1

VirusTotal security

Live Sessions Dashboard · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

SuspiciousApr 30, 2026, 5:00 AM
Hash
30f2d48f03321e2ba682f3bda8ec39980ce8f42be05b407092b2618cba6f76bb
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: sessions-dashboard Version: 1.0.1 The skill is classified as suspicious due to its default behavior of subscribing to `openclaw logs --json --follow` via `scripts/agents_cli_monitor.py`. The `SKILL.md` explicitly warns that these logs "can contain prompts, tool arguments, secrets, or PII." While the code does not appear to exfiltrate or persistently store this sensitive log content (it only extracts session IDs and update times), the default access and processing of such a sensitive data stream, even for a stated purpose, represents a risky capability without clear malicious intent. Users are warned and can opt-out with `--no-subscribe`, but the default behavior warrants caution.
External report
View on VirusTotal