Back to skill
Skillv0.1.0
VirusTotal security
Uniswap Design Integration · External malware reputation and Code Insight signals for this exact artifact hash.
Scanner verdict
ReviewMay 1, 2026, 3:46 AM
- Hash
- e19b224788ed5ae5f1c0cc958ec145ca7436d0ffeb45c61ac761872295237b9c
- Source
- palm
- Verdict
- suspicious
- Code Insight
- Type: OpenClaw Skill Name: design-integration Version: 0.1.0 The `SKILL.md` file grants the agent broad file system access capabilities through `allowed-tools` including `Read`, `Write`, `Edit`, `Glob`, and `Grep`. Combined with the instruction to 'analyze existing codebases' in the workflow, this creates a significant prompt injection vulnerability. An attacker could craft a prompt to instruct the agent to read, modify, or delete arbitrary files on the system, potentially leading to data leakage or system compromise, despite the skill's stated benign purpose of designing Uniswap integrations.
- External report
- View on VirusTotal
