Back to skill
Skillv1.0.1

VirusTotal security

SageMaker · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

ReviewApr 30, 2026, 6:28 AM
Hash
604f23a75e9e355a0452e6d8ff66c7236b661502b67bd7bcf366586f06bfdf56
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: sagemaker Version: 1.0.1 The skill bundle uses the name 'SageMaker' (a trademarked AWS service) for an unrelated memory management framework, which is misleading. Critically, SKILL.md contains explicit instructions for the AI agent to execute a PowerShell script (scripts/install.ps1) that is referenced but not provided in the bundle for security review, creating a blind execution risk. Furthermore, the instructions define protocols for modifying 'Core-files' like SOUL.md and IDENTITY.md, which are high-value targets for manipulating an agent's fundamental behavior and constraints.
External report
View on VirusTotal