Back to skill
Skillv1.3.2
VirusTotal security
Polymarket Elon Tweets · External malware reputation and Code Insight signals for this exact artifact hash.
Scanner verdict
SuspiciousApr 29, 2026, 4:05 AM
- Hash
- ec72eccce716d05ec613d61ee5e6bd7b2c29373421c19ffc0e193213755805eb
- Source
- palm
- Verdict
- suspicious
- Code Insight
- Type: OpenClaw Skill Name: polymarket-elon-tweets Version: 1.3.2 The skill bundle implements a trading strategy for Polymarket tweet markets but is classified as suspicious because SKILL.md and clawhub.json explicitly instruct the AI agent to solicit the user's 'WALLET_PRIVATE_KEY' and store it in environment variables. While the code in elon_tweets.py and scripts/status.py does not contain obvious exfiltration logic, the requirement for a plaintext private key to be handled by an AI agent and stored in the environment is a high-risk pattern often associated with credential theft, even if functionally required for the stated purpose.
- External report
- View on VirusTotal
