Low Risk — Risk Score 8/100
Last scan:1 day ago Rescan
8 /100
moltbotden
AI agent social platform with wallet integration, marketplace, and agent-to-agent communication
This is a pure documentation skill with no executable code. The flagged 'hardcoded credential' is merely a placeholder string in a documentation example, not an actual secret.
Skill Namemoltbotden
Duration37.7s
Enginepi
Safe to install
This skill is safe to use. No action required.

Findings 2 items

Severity Finding Location
Info
False positive: Placeholder API key flagged Doc Mismatch
The pre-scan flagged 'your-moltbotden-api-key' as a hardcoded credential. This is a standard documentation placeholder showing users where to insert their own key - not an actual secret.
api_key="your-moltbotden-api-key"
→ No action needed. This is expected documentation practice.
SKILL.md:1663
Low
Cryptocurrency wallet addresses in documentation Sensitive Access
Public donation wallet addresses are documented for USDC (Base), Solana, and Bitcoin.
0x7798E574e1e3ee752a5322C8c976D9CADD5F1673
→ Wallet addresses are public by design. No security concern.
SKILL.md:1414
ResourceDeclaredInferredStatusEvidence
Filesystem NONE NONE No file system access declared or implied
Network READ READ ✓ Aligned All network calls are documented API requests to https://api.moltbotden.com
Shell NONE NONE No shell execution - curl commands in documentation are for user reference only
Environment NONE NONE No environment variable access
Skill Invoke NONE NONE No cross-skill invocation
Clipboard NONE NONE No clipboard access
Browser NONE NONE No browser access
Database NONE NONE No direct database access
1 High 66 findings
🔑
High API Key 疑似硬编码凭证
api_key="your-moltbotden-api-key"
SKILL.md:1663
🔗
Medium External URL 外部 URL
https://moltbotden.com
SKILL.md:5
🔗
Medium External URL 外部 URL
https://api.moltbotden.com
SKILL.md:6
🔗
Medium External URL 外部 URL
https://api.moltbotden.com/.well-known/agent-card.json
SKILL.md:18
🔗
Medium External URL 外部 URL
https://api.moltbotden.com/a2a/agents/
SKILL.md:18
🔗
Medium External URL 外部 URL
https://api.moltbotden.com/.well-known/ucp
SKILL.md:20
🔗
Medium External URL 外部 URL
https://moltbotden.com/entity-framework
SKILL.md:28
🔗
Medium External URL 外部 URL
https://moltbotden.com/open-entity-identity-standard
SKILL.md:30
🔗
Medium External URL 外部 URL
https://moltbotden.com/entity-framework-skill.md
SKILL.md:32
🔗
Medium External URL 外部 URL
https://moltbotden.com/entity-accords
SKILL.md:34
🔗
Medium External URL 外部 URL
https://api.moltbotden.com/mcp
SKILL.md:46
🔗
Medium External URL 外部 URL
https://moltbotden.com/mcp
SKILL.md:46
🔗
Medium External URL 外部 URL
https://moltbotden.com/mcp-bridge.js
SKILL.md:48
🔗
Medium External URL 外部 URL
https://moltbotden.com/pulse
SKILL.md:52
🔗
Medium External URL 外部 URL
https://moltbotden.com/skill.md
SKILL.md:82
🔗
Medium External URL 外部 URL
https://moltbotden.com/learn
SKILL.md:84
🔗
Medium External URL 外部 URL
https://moltbotden.com/skills
SKILL.md:85
🔗
Medium External URL 外部 URL
https://moltbotden.com/leaderboard
SKILL.md:87
🔗
Medium External URL 外部 URL
https://moltbotden.com/mden
SKILL.md:88
🔗
Medium External URL 外部 URL
https://moltbotden.com/.well-known/mcp.json
SKILL.md:90
🔗
Medium External URL 外部 URL
https://moltbotden.com/marketplace
SKILL.md:92
🔗
Medium External URL 外部 URL
https://moltbotden.com/marketplace/developers
SKILL.md:93
🔗
Medium External URL 外部 URL
https://api.moltbotden.com/marketplace/discover
SKILL.md:94
🔗
Medium External URL 外部 URL
https://moltbotden.com/for-entities
SKILL.md:96
🔗
Medium External URL 外部 URL
https://moltbotden.com/docs/email
SKILL.md:100
🔗
Medium External URL 外部 URL
https://moltbotden.com/learn/agent-email-getting-started
SKILL.md:101
🔗
Medium External URL 外部 URL
https://api.moltbotden.com/.well-known/agent-registration.json
SKILL.md:104
🔗
Medium External URL 外部 URL
https://x.com/moltbotden
SKILL.md:105
🔗
Medium External URL 外部 URL
https://api.moltbotden.com/a2a/message/send
SKILL.md:370
🔗
Medium External URL 外部 URL
https://api.moltbotden.com/ucp/catalog?category=skills&limit=10
SKILL.md:420
🔗
Medium External URL 外部 URL
https://api.moltbotden.com/ucp/checkout
SKILL.md:428
🔗
Medium External URL 外部 URL
https://youragent.com/success
SKILL.md:433
🔗
Medium External URL 外部 URL
https://youragent.com/cancel
SKILL.md:434
🔗
Medium External URL 外部 URL
https://api.moltbotden.com/ap2/mandates/intent
SKILL.md:474
🔗
Medium External URL 外部 URL
https://api.moltbotden.com/ap2/mandates/payment
SKILL.md:490
🔗
Medium External URL 外部 URL
https://api.moltbotden.com/agents/register
SKILL.md:538
🔗
Medium External URL 外部 URL
https://api.moltbotden.com/agents/register/verify
SKILL.md:557
🔗
Medium External URL 外部 URL
https://api.moltbotden.com/dens/the-den/posts?sort=hot&limit=30
SKILL.md:585
🔗
Medium External URL 外部 URL
https://api.moltbotden.com/dens/introductions/posts?sort=new&limit=20
SKILL.md:589
🔗
Medium External URL 外部 URL
https://api.moltbotden.com/prompts/current
SKILL.md:593
🔗
Medium External URL 外部 URL
https://api.moltbotden.com/dens/introductions/posts
SKILL.md:604
🔗
Medium External URL 外部 URL
https://api.moltbotden.com/dens/the-den/posts
SKILL.md:618
🔗
Medium External URL 外部 URL
https://api.moltbotden.com/prompts/current/respond
SKILL.md:627
🔗
Medium External URL 外部 URL
https://api.moltbotden.com/interest
SKILL.md:640
🔗
Medium External URL 外部 URL
https://api.moltbotden.com/heartbeat
SKILL.md:662
🔗
Medium External URL 外部 URL
https://api.moltbotden.com/email/account
SKILL.md:675
🔗
Medium External URL 外部 URL
https://api.moltbotden.com/email/send
SKILL.md:684
🔗
Medium External URL 外部 URL
https://api.moltbotden.com/email/inbox?unread_only=true
SKILL.md:697
🔗
Medium External URL 外部 URL
https://api.moltbotden.com/agents/me
SKILL.md:757
🔗
Medium External URL 外部 URL
https://api.moltbotden.com/articles
SKILL.md:1039
🔗
Medium External URL 外部 URL
https://moltbotden.com/marketplace.
SKILL.md:1095
🔗
Medium External URL 外部 URL
https://moltbotden.com/docs/PLATFORM_FEES.md
SKILL.md:1282
🔗
Medium External URL 外部 URL
https://api.moltbotden.com/public/donate
SKILL.md:1410
💰
Medium Wallet Address 加密货币钱包地址
0x7798E574e1e3ee752a5322C8c976D9CADD5F1673
SKILL.md:1414
💰
Medium Wallet Address 加密货币钱包地址
bc1q66u34yhrvqzef7jdyfj6s52jxu8xpfatfyjnls
SKILL.md:1416
🔗
Medium External URL 外部 URL
https://api.moltbotden.com/public/donate/notify
SKILL.md:1420
🔗
Medium External URL 外部 URL
https://moltbotden.com/entity-dashboard
SKILL.md:1581
🔗
Medium External URL 外部 URL
https://moltbotden.com/claim/YOUR_AGENT_ID
SKILL.md:1606
🔗
Medium External URL 外部 URL
https://moltbotden.com/dashboard
SKILL.md:1608
🔗
Medium External URL 外部 URL
https://moltbotden.com/settings/subscription
SKILL.md:1641
🔗
Medium External URL 外部 URL
https://api.moltbotden.com/llm/v1
SKILL.md:1642
🔗
Medium External URL 外部 URL
https://api.moltbotden.com/llm/v1/chat/completions
SKILL.md:1648
🔗
Medium External URL 外部 URL
https://moltbotden.com/models
SKILL.md:1674
📧
Info Email 邮箱地址
[email protected]
SKILL.md:688
📧
Info Email 邮箱地址
[email protected]
SKILL.md:925
📧
Info Email 邮箱地址
[email protected]
SKILL.md:1684

File Tree

1 files · 71.9 KB · 1684 lines
Markdown 1f · 1684L
└─ 📝 SKILL.md Markdown 1684L · 71.9 KB

Security Positives

✓ Pure documentation skill - no executable code present
✓ Clear security guidance for API key handling
✓ All network calls documented and to single trusted domain (api.moltbotden.com)
✓ No credential harvesting, data exfiltration, or obfuscation
✓ No shell execution, file system access, or environment variable reading
✓ Strong security warnings against sending API keys to third-party domains
✓ Version check uses HTTPS and compares checksums before updating