Back to skill
Skillv1.0.0

VirusTotal security

Updating OpenRouter Free Models · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

ReviewApr 30, 2026, 6:28 AM
Hash
02dbe473e25288230c8e65d7283da6bc4aa814913a877e7f709452ea2ad55b9c
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: updating-openrouter-free-models Version: 1.0.0 The skill bundle automates the synchronization of OpenRouter free models by fetching data from the OpenRouter API and updating local configuration files. It exhibits high-risk behaviors including reading API keys from environment variables and configuration files (test_models.py), modifying sensitive application settings in ~/.claude/settings.json and ~/.openclaw/openclaw.json (apply_updates.py, apply_updates_openclaw.js), and restarting system services using launchctl or pkill (restart_openclaw.sh). While these actions are consistent with the stated purpose, the broad permissions and potential for configuration corruption or credential exposure justify a suspicious classification.
External report
View on VirusTotal