Back to skill
Skillv1.0.0

VirusTotal security

URnetwork · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

ReviewApr 30, 2026, 5:03 AM
Hash
a565b61d45efc0e46df2992a47f0f0ced66f5d7b09bef93f121716303dd2a8b3
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: proxy-vpn Version: 1.0.0 The skill is suspicious due to its instruction to apply a complete WireGuard configuration (`wg_config.config`) received from an external API (`api.bringyour.com`). While this capability is central to the skill's stated purpose of providing VPN services, it grants significant system-level control over the agent's network stack to an external entity. If the external API were compromised or malicious, it could provide a harmful WireGuard configuration, leading to network redirection, DNS hijacking, or other forms of system compromise. This represents a high-risk capability and a vulnerability in the trust model, even without explicit malicious intent within the skill bundle itself.
External report
View on VirusTotal