Back to skill
Skillv1.0.0

VirusTotal security

Ntriq X402 Invoice Extract · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

SuspiciousApr 17, 2026, 12:26 AM
Hash
057e7f7335eb43710b4a9830a3aaca9c87b3f400571daa5fd2f6343f4d889a75
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: ntriq-x402-invoice-extract Version: 1.0.0 The skill documentation in SKILL.md contains a significant contradiction: it claims 'Local AI vision' and 'no cloud upload' while simultaneously providing instructions to POST invoice data (which often contains sensitive PII) to a remote endpoint (https://x402.ntriq.co.kr/invoice-extract). This misleading description regarding data residency and privacy is a red flag, as it may trick users into uploading sensitive documents to a third-party service under the guise of local processing.
External report
View on VirusTotal