Back to skill
Skillv1.4.4

VirusTotal security

raiffeisen-elba · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

BenignMay 1, 2026, 3:53 AM
Hash
9c7ad34e6c2671fcec6f160f5b0382035827712cda937c6df42caabf392afe69
Source
palm
Verdict
benign
Code Insight
Type: OpenClaw Skill Name: raiffeisen-elba Version: 1.4.4 The skill provides automation for Raiffeisen ELBA banking via Playwright and internal API calls. While it handles highly sensitive data (bank credentials and session tokens), it implements exemplary security practices, including strict file permissions (0600/0700), a global restrictive umask (0077), and robust path sanitization in `elba.py` to prevent directory traversal. All network traffic is confined to official bank domains (*.raiffeisen.at), and the documentation (SECURITY.md) transparently details the bearer token extraction process and session lifecycle management.
External report
View on VirusTotal