Skip to content

False positive "Suspicious skill" flag on ClawHub for quote0 (VirusTotal shows clean 0/66) #511

@YangguangZhou

Description

@YangguangZhou

Summary

My skill quote0 was published to ClawHub, but it is still marked as "Skill flagged — suspicious patterns detected" on the skill page.

This appears to be a false positive or a mismatch between ClawHub security labeling and the VirusTotal result.

What happened

  1. Published [email protected] to ClawHub.
  2. Opened the skill page.
  3. ClawHub banner shows: "Skill flagged — suspicious patterns detected".
  4. In the security scan section, VirusTotal is shown as suspicious on ClawHub UI, but opening VirusTotal report shows 0/66 clean.

Expected behavior

If VirusTotal and other checks are clean, the skill should not be labeled as suspicious (or at least should provide exact reasons/rules that triggered the flag).

Actual behavior

ClawHub displays the skill as suspicious despite VirusTotal report showing no detections.

Evidence

  • Screenshot 1: ClawHub skill page showing suspicious warning
  • Screenshot 2: VirusTotal report showing 0/66
  • SHA256 shown in VirusTotal page:
    3deccfaaee7e1c6bc1be0782efc77faf0525d9d1cc2d7709d5cc4f85c6001ed3

Request

Please help verify:

  1. Why this skill is marked suspicious.
  2. Which specific rule/pattern triggered the flag.
  3. Whether this is a false positive in ClawHub scanning logic.
  4. How to appeal/clear the flag for this version if it is safe.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions