Back to skill
Skillv1.0.0
VirusTotal security
binancesquare · External malware reputation and Code Insight signals for this exact artifact hash.
Scanner verdict
ReviewApr 30, 2026, 6:04 AM
- Hash
- c346d8fec54cb254b2edc7e86a4f45eb9fae366c0f3b4e8b20f0eafa4a231235
- Source
- palm
- Verdict
- suspicious
- Code Insight
- Type: OpenClaw Skill Name: binancesquare Version: 1.0.0 The skill fetches data from an unofficial Binance mirror domain (bmwweb.cc) using hardcoded session identifiers (Bnc-Uuid and Cookie) within scripts/binance_square.py. While the script's logic is consistent with its stated purpose of scraping retail posts from Binance Square, the use of a third-party endpoint and hardcoded credentials represents a security risk and potential for traffic interception, although no clear evidence of intentional malice or data exfiltration was found.
- External report
- View on VirusTotal
