Back to skill
Skillv1.0.0

VirusTotal security

volcengine-web-search · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

BenignApr 30, 2026, 3:39 AM
Hash
d71d3624b5d660abd23b55d6409ae215297ba952b4bc35c877b89de9290247d0
Source
palm
Verdict
benign
Code Insight
Type: OpenClaw Skill Name: volcengine-web-search Version: 1.0.0 The skill bundle is benign. The `SKILL.md` provides clear instructions for using the `web_search.py` script without any prompt injection attempts. The `web_search.py` script legitimately retrieves Volcengine API credentials from environment variables or VeFaaS IAM, and then makes a standard API call to `mercury.volcengineapi.com` for web search, passing the user query as data within a JSON payload. There is no evidence of malicious execution, data exfiltration to unauthorized endpoints, or other harmful behaviors.
External report
View on VirusTotal