Back to skill
Skillv1.0.1

VirusTotal security

Email Finder · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

SuspiciousApr 30, 2026, 4:00 AM
Hash
79e7ea803dbebbb64b83a9d57b8663f34241e593e991c3ef8c58bf8865850da6
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: email-finder Version: 1.0.1 The skill bundle is classified as suspicious primarily due to a significant security vulnerability in `scripts/find_emails.py`: it disables SSL certificate verification (`ssl.CERT_NONE`) when fetching web pages, exposing the agent to potential Man-in-the-Middle (MITM) attacks. Additionally, the script performs extensive network requests (HTTP/HTTPS, DNS, SMTP) which, while aligned with its stated purpose of email finding, represent high-risk capabilities. There is no evidence of intentional malicious behavior like data exfiltration, persistence, or prompt injection against the agent in `SKILL.md`.
External report
View on VirusTotal