Skip to content

docs: ClawHub VirusTotal Suspicious vs OpenClaw Benign#7

Draft
Science-Prof-Robot wants to merge 1 commit into
mainfrom
cursor/clawhub-vt-suspicious-clarify-c822
Draft

docs: ClawHub VirusTotal Suspicious vs OpenClaw Benign#7
Science-Prof-Robot wants to merge 1 commit into
mainfrom
cursor/clawhub-vt-suspicious-clarify-c822

Conversation

@Science-Prof-Robot

Copy link
Copy Markdown
Owner

Summary

ClawHub’s security panel can show VirusTotal: Suspicious while OpenClaw: Benign because those signals come from different analyses (static Code Insight vs policy review). This change documents that mismatch so maintainers and users are not stuck trying to “fix” a label that often reflects legitimate skill content (credentials docs, subprocess helpers) rather than malware.

Changes

  • Add a short subsection under the existing VirusTotal / --force explanation in README.md.

No runtime or skill behavior changes.

Open in Web Open in Cursor 

Clarify that VT Code Insight (static) often labels skill zips as
suspicious while OpenClaw policy review and Zenbox can disagree;
users should trust source + OpenClaw and use --force when needed.

Co-authored-by: Science-Prof-Robot <Science-Prof-Robot@users.noreply.github.com>
@cursor cursor Bot deleted the cursor/clawhub-vt-suspicious-clarify-c822 branch April 25, 2026 08:39
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants