Back to skill
Skillv1.0.0
VirusTotal security
DiaryBeast · External malware reputation and Code Insight signals for this exact artifact hash.
Scanner verdict
SuspiciousApr 28, 2026, 3:23 AM
- Hash
- 98c71685f9db2c735a87c9a38117cf8bd9dcec5ba43c24ff10fad02e1c350820
- Source
- palm
- Verdict
- suspicious
- Code Insight
- Type: OpenClaw Skill Name: diary-beast Version: 1.0.0 The skill is classified as suspicious due to its reliance on the `exec` tool, which grants broad shell access, and its practice of saving a DApp-specific authentication token and wallet address to local files (`~/.openclaw/workspace/skills/diarybeast/.token`, `.address`). While the current usage of `exec` is for legitimate interactions with the `dapp.diarybeast.xyz` API via `curl` and local file management, and the saved token is specific to the DApp, the broad `exec` permission and local credential persistence represent risky capabilities without clear malicious intent, aligning with the 'suspicious' threshold.
- External report
- View on VirusTotal
