Back to skill
Skillv1.0.0

VirusTotal security

CHECK · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

SuspiciousApr 29, 2026, 5:14 AM
Hash
b3e0f9ae7a0e41d2b50f2cc16c06f3c924237b1979476e7ceb7b2c127a03628f
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: check Version: 1.0.0 The bundle provides high-risk capabilities including arbitrary code execution, package installation, and elevated command execution (sudo/runas) across several files like code_generator_tester_skill.py and universal_permission_manager_skill.py. While these features align with the stated purpose of a 'Development Skills Bundle,' the lack of strict input sanitization and the request for broad system permissions create a significant attack surface for Remote Code Execution (RCE). No evidence of intentional malice or data exfiltration was found, but the inherent risks of the provided tools exceed the threshold for a benign classification.
External report
View on VirusTotal