Back to skill
Skillv1.0.4

VirusTotal security

Skill Linkedin · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

SuspiciousApr 30, 2026, 9:41 AM
Hash
82b8f653bc07d3a5e359b59935ed1bf8bba2b334616005cc9fc4448fd0938815
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: yunlv-linkedin-outreach Version: 1.0.4 The skill is designed for LinkedIn outreach and message generation but is classified as suspicious because it requests a 'LINKEDIN_SESSION_TOKEN' in its configuration (clawhub.yaml and SKILL.md). This is a high-risk credential that provides full access to a user's LinkedIn account. While the instructions claim the token is used for parsing profile information and emphasize manual message delivery, the request for such sensitive session data in an AI-driven skill represents a significant security risk. No explicit evidence of intentional malice or data exfiltration was found in the provided markdown or configuration files.
External report
View on VirusTotal