Back to skill
Skillv1.0.0

VirusTotal security

Pilot Email Bridge · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

SuspiciousApr 9, 2026, 2:26 AM
Hash
442142f3ad221d99795dd98d775707d9bf4c5c664076fc4c8c04a0f5b9bb70a1
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: pilot-email-bridge Version: 1.0.0 The skill bundle provides an email bridge interface using the `pilotctl` binary, which includes high-risk capabilities such as sending local files to a remote relay (`send-file`) and configuring outbound webhooks (`set-webhook`). While these tools are plausibly required for the stated purpose, the potential for data exfiltration and the instruction in `SKILL.md` to execute an external background script (`smtp_relay_server.py`) not included in the bundle are significant risk factors. No clear evidence of intentional malice was found, but the broad file and network access capabilities warrant caution.
External report
View on VirusTotal