Back to skill
Skillv1.0.0

VirusTotal security

Agent Retro · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

SuspiciousApr 29, 2026, 5:21 AM
Hash
b4c62d18ef11bc9c10d041f0cb7aca08011faa7fcaa3fa4c5cfa0c4d8466b7fa
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: agent-retro Version: 1.0.0 The skill automates an agent 'retrospective' process by reading session logs from `~/.openclaw/agents/` and updating core configuration files including `SOUL.md`, `AGENTS.md`, `USER.md`, and `MEMORY.md`. While the behavior is aligned with the stated purpose of self-improvement and includes safety measures like mandatory file backups and execution locks, the automated modification of the agent's core behavioral instructions and personality based on session history is a high-risk capability that could facilitate persistent prompt injection. The skill requires broad file system access to sensitive agent directories to function.
External report
View on VirusTotal