Back to skill
Skillv0.1.0

VirusTotal security

Agent Browser · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

SuspiciousApr 30, 2026, 5:15 AM
Hash
94946a8c5680c34cb91b726316dc9b61ae30ad403adb5198b81764de4f453745
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: agent-browser-vercel Version: 0.1.0 The skill bundle provides a comprehensive browser automation CLI (agent-browser) with high-risk capabilities, including arbitrary JavaScript execution (eval), network request interception/mocking (network route), and a credential management system (auth vault). While the documentation in SKILL.md and the references folder includes significant defensive features like domain allowlists, action policies, and content boundaries, the tool's inherent power for data exfiltration and session manipulation via the browser represents a significant attack surface. No clear evidence of malicious intent or hardcoded exfiltration endpoints was found in the provided templates or instructions.
External report
View on VirusTotal