Back to skill
Skillv1.0.1
VirusTotal security
SageMaker · External malware reputation and Code Insight signals for this exact artifact hash.
Scanner verdict
ReviewApr 30, 2026, 6:28 AM
- Hash
- 604f23a75e9e355a0452e6d8ff66c7236b661502b67bd7bcf366586f06bfdf56
- Source
- palm
- Verdict
- suspicious
- Code Insight
- Type: OpenClaw Skill Name: sagemaker Version: 1.0.1 The skill bundle uses the name 'SageMaker' (a trademarked AWS service) for an unrelated memory management framework, which is misleading. Critically, SKILL.md contains explicit instructions for the AI agent to execute a PowerShell script (scripts/install.ps1) that is referenced but not provided in the bundle for security review, creating a blind execution risk. Furthermore, the instructions define protocols for modifying 'Core-files' like SOUL.md and IDENTITY.md, which are high-value targets for manipulating an agent's fundamental behavior and constraints.
- External report
- View on VirusTotal
