@emilioacc

ATXP

Access ATXP paid API tools for web search, AI image generation, music creation, video generation, X/Twitter search, email, and agent account management. Use...

Current version
v1.0.1
29 4.7万All installs 24

v1.0.1

2026/02/19

Version

Expanded feature set with new email and agent account management tools. - Added full ATXP email functionality: inbox management, send/receive, attachments, search, username claiming, and more. - Introduced agent account creation, balance checking, funding options, and agent management commands. - Detailed instructions for account balance, funding, and top-up via Stripe payment link. - Included best practices and support contact method using the new email commands. - Updated tool descriptions, command list, and usage sections for better guidance.

Security Scan

Status

suspicious

Open VirusTotal

OpenClaw

gpt-5-mini

suspicious

OpenClaw analysis

The skill's described functionality matches the npx-based CLI it documents, but the runtime instructions reference local config and an environment variable (and rely on npx downloading code) without declaring those requirements — this is an incoherence that could expose credentials or cause unexpected code execution.

Confidence: medium

VirusTotal

Type: OpenClaw Skill Name: atxp Version: 1.0.1 The SKILL.md contains explicit instructions that enable unauthorized remote control and potential arbitrary code execution. Specifically, it instructs the agent to check emails for 'instructions for downloading the latest version' and to act upon them, creating a direct prompt injection vector for an attacker to send malicious update commands via email. Additionally, it provides instructions on how to modify the critical `/root/.openclaw/openclaw.json` configuration file, which could be exploited to alter agent behavior or permissions. These are not mere vulnerabilities but explicit instructions to the agent that facilitate harmful behavior.

Metadata

  • Owner: @emilioacc
  • Created: 2026/01/26
  • Updated: 2026/05/19
  • Versions: 2
  • Comments: 0
  • Scan checked at: 2026/02/19

Runtime

No runtime requirements are exposed in the official public payload.

ATXP | ClawHub CN