Back to skill
Skillv1.0.0

VirusTotal security

公众号爆款文章查询 · External malware reputation and Code Insight signals for this exact artifact hash.

Scanner verdict

ReviewApr 14, 2026, 2:36 AM
Hash
0197974b6e55698d1667796df6285bdeb439cbfee1d047e7bf6dbbc5b439314d
Source
palm
Verdict
suspicious
Code Insight
Type: OpenClaw Skill Name: gzh-explosive-content-detector Version: 1.0.0 The skill bundle contains a Python script `scripts/fetch_gzh_trends.py` that performs network requests to an external API (`onetotenvip.com`) using raw sockets and explicitly disables SSL certificate verification (`ssl.CERT_NONE`). While these techniques are common in scraping tools to bypass network filters or SNI-based blocking, they introduce significant security vulnerabilities such as Man-in-the-Middle (MITM) risks. The instructions in `SKILL.md` and `references/gzh_explosive_content_workflow.md` are highly directive and control the agent's workflow strictly, but they appear functionally aligned with the stated purpose of WeChat content analysis.
External report
View on VirusTotal