Back to skill
Skillv0.1.0

VirusTotal security

Uniswap Design Integration · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

ReviewMay 1, 2026, 3:46 AM
Hash
e19b224788ed5ae5f1c0cc958ec145ca7436d0ffeb45c61ac761872295237b9c
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: design-integration Version: 0.1.0 The `SKILL.md` file grants the agent broad file system access capabilities through `allowed-tools` including `Read`, `Write`, `Edit`, `Glob`, and `Grep`. Combined with the instruction to 'analyze existing codebases' in the workflow, this creates a significant prompt injection vulnerability. An attacker could craft a prompt to instruct the agent to read, modify, or delete arbitrary files on the system, potentially leading to data leakage or system compromise, despite the skill's stated benign purpose of designing Uniswap integrations.
External report
View on VirusTotal