Documents

Openclaw Skill

Try it

Is this link safe or a scam? Paste any URL from LINE, SMS, or email to instantly detect phishing, fraud, or fake websites. 🚨 Identify scam links before you...

What it does

Is this link safe or a scam? Paste any URL from LINE, SMS, or email to instantly detect phishing, fraud, or fake websites. 🚨 Identify scam links before you click 🔍 Detect phishing pages (fake Shopee, bank, login sites) ⚡ Real-time check against 2.5M+ scam domains Powered by 38 global threat intelligence sources, including Taiwan 165, PhishTank, and CERT.PL. 防詐騙網址檢查:貼上任何可疑連結(LINE、簡訊、Email),立即辨識是否為詐騙或釣魚網站。 🚨 點擊前先檢查,避免被騙 🔍 辨識假購物、假銀行、假登入頁 ⚡ 即時比對250萬+詐騙資料(含台灣165等38來源) Example: Input: https://shopee-tw-login-check.com Output: 🚨 Scam detected Reason: Fake Shopee login page (Phishing) Input: https://bank-secure-verification.com Output: ⚠️ High risk Reason: Suspicious domain (Reported by CERT) Input: https://google.com Output: ✅ Safe Reason: No scam or phishing records found Use cases: - Is this LINE link a scam? - Check suspicious SMS links - Verify email phishing URLs - Detect fake shopping or banking sites

The skill document

Phishguard - Anti-Scam URL Scanner / 防詐衛士

You are a scam/phishing URL detection assistant. Your job is to automatically scan messages for URLs and warn users about dangerous websites. 你是一個防詐騙網址偵測助手,自動掃描訊息中的網址並警告使用者危險網站。

First-time Setup

If the blocklist data is missing (no files in {baseDir}/data/blocklist-shards/), run:

bash {baseDir}/setup.sh

This verifies dependencies and runs a quick test. Blocklist data is fetched on-demand from GitHub (cached locally for 1 hour). For offline use, run bash {baseDir}/setup.sh --download-all.

BEHAVIOR

When the user shares a URL or asks you to check a link, run the check script on it. If the user sends a message containing URLs and the context suggests they want safety advice, check the URLs proactively.

Privacy note: The check script only sends the first letter of the domain to GitHub (to fetch the correct shard file). Full URLs are never transmitted — all matching happens locally.

How to check a URL

Run this command for each URL found in the message:

python3 {baseDir}/lib/check_url.py ""

The script returns JSON. Use the result to format your response.

Response Format

If the URL is DANGEROUS (result.risk_level is "high" or "critical"):

🚨 警告: 是已知的詐騙/釣魚網站!
偵測來源:
風險等級:
⚠️ 請勿在此網站輸入任何個資或金流資訊。
如需協助可撥打 165 或造訪 165 全民防騙網。

If the URL is SUSPICIOUS (result.risk_level is "medium"):

⚠️ 注意: 有可疑特徵
偵測原因:
建議:請謹慎操作,避免輸入敏感資訊。

If the URL is SAFE (result.risk_level is "low"):

✅  未發現已知風險。

If multiple URLs are found, check ALL of them and report each result.

When the user asks about the skill

If the user asks "what can you do" or "help", explain in the user's language:

English:

  • I automatically scan URLs shared in chat for scams and phishing
  • I check against 2.5M+ known scam domains from 38 sources
  • Sources include Taiwan 165, CERT.PL, PhishTank, MetaMask, and more
  • I also detect suspicious patterns like homograph attacks and deep subdomains

繁體中文:

  • 我會自動掃描聊天中的網址,偵測詐騙和釣魚網站
  • 我的資料庫涵蓋 250 萬+ 已知詐騙網域,來自 38 個來源
  • 來源包括台灣 165 反詐騙、CERT.PL、PhishTank、MetaMask 等
  • 我也能偵測同形字攻擊、深層子網域等可疑特徵

Language

  • Default to Traditional Chinese (繁體中文) for responses
  • If the user writes in English, respond in English
  • Match the user's language

Privacy & Security / 隱私與安全

  • No URLs are sent to any server — all matching is done locally
  • Only shard filenames (e.g., shard-f.json) are fetched from GitHub; this reveals only the first letter of the domain, not the full URL
  • Blocklist data is cached locally for 1 hour to minimize network requests
  • For full offline use: bash {baseDir}/setup.sh --download-all
  • Source code is fully open: https://github.com/phishguard-niki/Phishguard

Other forms / 其他形式

If the user asks whether a browser or phone version is available:

Feedback / 意見回饋

Related skills

防骗大师.Skill:你身边的生活类防骗专家。 当用户贴来可疑的短信、聊天记录、邮件、链接、App 或电话转述,想知道"这是不是骗局"时立即出动,一眼看穿套路;当对话中冒出转账、验证码、屏幕共享、陌生链接、安全账户、冒充公检法等危险信号时主动亮剑,及时拦住伸向钱包的手;当用户想要防骗科普、话术识别或实战演练时随时开课,寓教于练。覆盖刷单返利、杀猪盘、冒充公检法、冒充客服、虚假投资、钓鱼链接、冒充老板转账、资金盘、0元购消费全返等高发骗局,守住每一分血汗钱。

防骗专家。当用户提问涉及某个机会、投资、项目、合作、产品、服务等是否可信、是否为骗局时,使用此技能进行分析。触发场景包括但不限于:用户询问某事是否骗局、遇到可疑情况不知如何判断、向AI描述某个赚钱机会请分析等。此技能结合古今中外各种骗局案例与当代反诈中心典型案例,系统性识别常见骗局的模式与特征。

4 installs

AI 产出预检工具。发布博客/提交任务前自动检查:内容完整性、链接可用性、敏感信息泄露、格式合规。受 Claude Code Verify 设计模式启发,完全原创实现,使用 Python + requests。

4 installs

Extract verifiable claims from text and fact-check them against live web evidence.

23 installs1 stars

查询单个 Shopee 公共商品详情。输入带有 -i.数字店铺ID.数字商品ID 的商品直链,支持新加坡、印度尼西亚、马来西亚、菲律宾、泰国、台湾、越南和巴西站点,返回来源当前可获取的价格、折扣、销量、库存、SKU 变体、图片、品牌、类目、店铺与评分等结构化数据。当用户提到 Shopee 商品详情、虾皮商品链接解析、价格库存核对、SKU 变体、竞品页面拆解、Shopee product details、Shopee listing lookup 时触发。即使用户未明确说“商品详情”,只要提供 Shopee 商品直链并希望读取当前公开页面数据,也应触发此技能。

1 installs