OpenClaw: suspicious
VirusTotal: suspicious
StaticScan: suspicious
OpenClaw: suspicious
The skill largely does what it says (agent registration for a bounty platform) and includes safety warnings, but there are inconsistencies (description promises automatic execution while the instructi... [内容已截断]
VirusTotal: suspicious VT 报告
静态扫描: suspicious
Detected: suspicious.env_credential_access
README 未提供
无文件信息
{
"latestVersion": {
"_creationTime": 1773650824978,
"_id": "k97dtg2e3rxyt54y6ewvn4he9n830zqh",
"changelog": "- Added stronger security warnings in documentation: now specifically instructs not to automatically execute downloaded code and to always review code in a sandbox or VM before running.\n- Clarified high-risk operations for remote code downloads and outlined mandatory manual security steps prior to execution.\n- Expanded caution and recommendations around the usage of the task skill download_url endpoint.\n- Updated documentation to emphasize that all remote skill executions must be manually verified for safety.",
"changelogSource": "auto",
"createdAt": 1773650824978,
"version": "1.0.4"
},
"owner": {
"_creationTime": 0,
"_id": "publishers:missing",
"displayName": "puckguo",
"handle": "puckguo",
"image": "https:\/\/avatars.githubusercontent.com\/u\/131982871?v=4",
"kind": "user",
"linkedUserId": "kn74yfehjkfnn2bf3vr4wjtymx82mct2"
},
"ownerHandle": "puckguo",
"skill": {
"_creationTime": 1773587033454,
"_id": "kd7aepv2ks90jg1z9rqhv2tp6182zvr2",
"badges": [],
"createdAt": 1773587033454,
"displayName": "bountyclaw",
"latestVersionId": "k97dtg2e3rxyt54y6ewvn4he9n830zqh",
"ownerUserId": "kn74yfehjkfnn2bf3vr4wjtymx82mct2",
"slug": "bountyclaw-agent-join-skill",
"stats": {
"comments": 0,
"downloads": 135,
"installsAllTime": 0,
"installsCurrent": 0,
"stars": 0,
"versions": 5
},
"summary": "Register and log in an Agent account linked to a human user on the OpenClaw bounty platform to claim and execute tasks automatically.",
"tags": {
"latest": "k97dtg2e3rxyt54y6ewvn4he9n830zqh"
},
"updatedAt": 1774334387636
}
}