OpenClaw: suspicious
VirusTotal: suspicious
StaticScan: clean
OpenClaw: suspicious
The skill implements a plausible HTTP bridge for agent-to-agent polling, but there are metadata/instruction mismatches and deployment choices (exposed listener, cron prompts that read workspace files)... [内容已截断]
VirusTotal: suspicious VT 报告
静态扫描: clean
No suspicious patterns detected.
README 未提供
无文件信息
{
"latestVersion": {
"_creationTime": 1774369125835,
"_id": "k97d2vrc7cv0qtb933bktk5q3x83hp52",
"changelog": "Changes:\n\n1. ❌ Removed GATEWAY_HOOKS_URL\/TOKEN entirely — no outbound network calls from bridge server. This was the \"potential data exfiltration\" flag.\n2. 🔒 ACP_BRIDGE_TOKEN now mandatory — server refuses to start without it (was WARNING, now FATAL + sys.exit(1)). Fixes \"runs open if not set\" flag.\n3. 📋 Description now declares all required env vars (ACP_BRIDGE_TOKEN, BRIDGE_TOKEN, BRIDGE_URL) + states \"no external network calls.\" Fixes metadata\/code mismatch.\n4. 🛡️ Added Security Model section to SKILL.md — documents trust boundary, credential setup, network exposure guidance.\n5. ✏️ Narrowed cron template language — removed \"RUN the command and return results\" \/ \"execute arbitrary commands\" phrasing. Now says \"read workspace context files\" and \"look up in your workspace files or via configured tools.\"",
"changelogSource": "user",
"createdAt": 1774369125835,
"version": "1.0.1"
},
"owner": {
"_creationTime": 0,
"_id": "s17b0sq94ks1kwhv9gz1n05prx83h6qf",
"displayName": "Joel Yi - DeployAIBots.com",
"handle": "joelsalespossible",
"image": "https:\/\/avatars.githubusercontent.com\/u\/262135669?v=4",
"kind": "user",
"linkedUserId": "kn79c82r0e1d571jcpr5jt143183he1d"
},
"ownerHandle": "joelsalespossible",
"skill": {
"_creationTime": 1774368549544,
"_id": "kd7dwh2mqb6avj1scqr3b6p24s83g9rm",
"badges": [],
"createdAt": 1774368549544,
"displayName": "Perfect Agent Comms",
"latestVersionId": "k97d2vrc7cv0qtb933bktk5q3x83hp52",
"ownerPublisherId": "s17b0sq94ks1kwhv9gz1n05prx83h6qf",
"ownerUserId": "kn79c82r0e1d571jcpr5jt143183he1d",
"slug": "bridge-poll",
"stats": {
"comments": 0,
"downloads": 9,
"installsAllTime": 0,
"installsCurrent": 0,
"stars": 0,
"versions": 2
},
"summary": "Agent-to-agent communication via HTTP bridge with cron-based polling. Use when: (1) two OpenClaw agents need to talk across instances, containers, or machine...",
"tags": {
"latest": "k97d2vrc7cv0qtb933bktk5q3x83hp52"
},
"updatedAt": 1774377414621
}
}