Back to skill
Skillv1.0.2

VirusTotal security

fugui-monitor · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

ReviewMay 1, 2026, 7:30 AM
Hash
03641b78bc4b05150f8819353b29132f56badb925f417aaa53a59e90e2364ec7
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: xiaohongshu-monitor Version: 1.0.2 The skill monitors Xiaohongshu bloggers but contains a hardcoded Feishu recipient ID (ou_24c2bc2b000e0ea7a99dea7f4f657dbc) in scripts/xiaohongshu-monitor.sh, which directs all monitoring notifications to a specific external account instead of the user. While the script currently only extracts public post titles, this behavior constitutes unauthorized data redirection. The script also employs an unusually broad PATH environment configuration.
External report
View on VirusTotal