Crypto Genie OpenClaw Plugin & Skill | ClawHub
Looking to integrate Crypto Genie into your AI workflows? This free OpenClaw plugin from ClawHub helps you automate coding agents & ides tasks instantly, without having to write custom tools from scratch.
What this skill does
AI-powered cryptocurrency safety assistant with database-first architecture. Protects users from phishing, honeypots, rug pulls, and ponzi schemes. No external API calls during checks!
Install
openclaw skills install @princedoss77/crypto-genienpx clawhub@latest install crypto-genieFull SKILL.md
Open original| name | version | description | license | tags |
|---|---|---|---|---|
| crypto-genie | 2.0.0 | AI-powered cryptocurrency safety assistant with database-first architecture. Protects users from phishing, honeypots, rug pulls, and ponzi schemes. No external API calls during checks! | MIT | cryptoscam-detectionethereumblockchainsecurityfraud-preventionweb3defidatabaseetherscanai-assistant |
SKILL.md content below is scrollable.
š§ Crypto Genie v2.0
Your AI-powered cryptocurrency safety assistant for OpenClaw
Analyzes crypto addresses for phishing, honeypots, rug pulls, and ponzi schemes using a local database with background sync from Etherscan. Zero external API calls during user checks = instant results!
⨠What's New in v2.0
š Major Architecture Upgrade
- ā Database-first design - All checks query local SQLite database
- ā Instant results - No API latency during checks (<5ms)
- ā No rate limits - User queries never hit Etherscan API
- ā Background sync worker - Separate process pulls from Etherscan
- ā Transaction message analysis - Decodes and analyzes hex data
- ā Auto-queue system - Unknown addresses automatically queued for sync
- ā Deep scanning - Detects suspicious keywords in transaction data
š Enhanced Detection
Now catches scams the old version missed:
- ā "Lazarus Vanguard" hacking group references
- ā "Orbit Bridge Hacker" mentions
- ā Private key phishing attempts
- ā Exploit recruitment messages
- ā And much more...
š¦ What's Included
crypto-genie/
āāā SKILL.md # This file
āāā DATABASE_ARCHITECTURE.md # Technical documentation
āāā database.py # SQLite database layer
āāā crypto_check_db.py # Database-only checker (instant)
āāā sync_worker.py # Background Etherscan sync worker
āāā secure_key_manager.py # Encrypted API key storage
āāā install.sh # Auto-installer
āāā setup.sh # API key setup wizard
āāā check_address.sh # Convenience script (sync if needed)
āāā requirements.txt # Python dependencies
āāā venv/ # Virtual environment (created on install)
š Quick Start
1. Install
cd ~/.openclaw/workspace/skills/crypto-genie
bash install.sh
2. Configure Etherscan API Key (Optional but Recommended)
Option A: Interactive Setup (Encrypted storage)
./setup.sh
# Follow the wizard to encrypt your API key
Option B: Environment Variable
export ETHERSCAN_API_KEY="your_key_here"
Get free API key: https://etherscan.io/myapikey
3. Check an Address
# Check address (instant, database-only)
python3 crypto_check_db.py 0x1234567890abcdef1234567890abcdef12345678
4. Run Background Sync Worker
Manual mode:
python3 sync_worker.py
# Runs continuously, processes queue
Batch mode:
python3 sync_worker.py --max-jobs 20
# Process 20 addresses then exit
Cron schedule (recommended):
# Add to crontab
*/10 * * * * cd ~/.openclaw/workspace/skills/crypto-genie && source venv/bin/activate && ETHERSCAN_API_KEY="key" python3 sync_worker.py --max-jobs 30
š” How It Works
Architecture Flow
User checks address
ā
āāāāāāāāāāāāāāāāāāāā
ā crypto_check_db ā ā Queries local database ONLY
āāāāāāāāāā¬āāāāāāāāāā (No external API calls)
ā
ā
āāāāāāāāāāāāāāāāāāāāāāāā
ā Local SQLite DB ā
ā ~/.config/crypto- ā
ā scam-detector/ ā
ā ā
ā ⢠Addresses ā
ā ⢠Transactions ā
ā ⢠Risk scores ā
ā ⢠Scam indicators ā
ā ⢠Sync queue ā
āāāāāāāāāā²āāāāāāāāāāāāāā
ā
ā Background sync
ā
āāāāāāāāāā“āāāāāāāāāāāāāā
ā sync_worker.py ā ā Pulls from Etherscan
ā ā (Uses your API key)
ā ⢠Reads queue ā
ā ⢠Calls Etherscan ā
ā ⢠Decodes TX data ā
ā ⢠Analyzes messages ā
ā ⢠Stores in DB ā
āāāāāāāāāāāāāāāāāāāāāāāā
User Flow
- Check address:
python3 crypto_check_db.py 0x... - If in database: Instant results with full analysis
- If NOT in database:
- Returns "unknown" status
- Automatically adds to sync queue
- Shows: "ā³ Check again in a few minutes"
- Background worker syncs it (next cron run or manual trigger)
- Check again: Full analysis now available
š Detection Capabilities
Scam Types Detected
| Type | Detection Method |
|---|---|
| Phishing | Keyword analysis: "private key", "seed phrase", "verify wallet" |
| Honeypot | Contract code analysis (unverified contracts) |
| Rug Pull | Transaction pattern analysis |
| Exploit Groups | Keywords: "Lazarus", "hack", "exploit", "breach" |
| Social Engineering | Keywords: "urgent", "claim reward", "airdrop winner" |
Risk Scoring
Algorithm factors:
- Suspicious transaction count (+25 per TX, max +50)
- Account age (new addresses: +10)
- Balance patterns (large balance + suspicious TX: +20)
- Contract verification (unverified: +30)
Risk Levels:
- 0-19: ā Low Risk
- 20-49: ā¹ļø Medium Risk
- 50-79: ā ļø High Risk
- 80-100: šØ Critical Risk
š Commands Reference
Check Address
# Human-readable output
python3 crypto_check_db.py 0x...
# JSON output
python3 crypto_check_db.py 0x... --json
Sync Worker
# Add address to queue
python3 sync_worker.py --add-address 0x...
# Run worker (continuous)
python3 sync_worker.py
# Process N addresses then stop
python3 sync_worker.py --max-jobs 20
# Custom delay between addresses
python3 sync_worker.py --delay 2.0
# Show database stats
python3 sync_worker.py --stats
Convenience Script
# Check and auto-sync if needed
./check_address.sh 0x...
# Automatically syncs if not in DB, then shows results
šÆ Example Output
Critical Risk Address
šØ Analysis for 0x098b716b8aaf21512996dc57eb0615e2383e2f96
Risk Score: 100/100 - CRITICAL RISK
Last Updated: 2026-02-20 07:14:32
šØ KNOWN SCAM DETECTED!
āļø Smart Contract
ā ļø NOT VERIFIED on Etherscan
Transactions: 38
Balance: 101.802430 ETH
šØ 5 Scam Indicator(s) Detected:
⢠Suspicious keyword detected: 'lazarus' (confidence: 80%)
⢠Suspicious keyword detected: 'hack' (confidence: 80%)
⢠Suspicious keyword detected: 'exploit' (confidence: 80%)
⢠Suspicious keyword detected: 'private key' (confidence: 80%)
ā ļø 5 Suspicious Transaction(s):
⢠0x74f7fbfe5a0bd3...
Reason: Suspicious keyword detected: 'lazarus'
Message: "Greetings Lazarus Vanguard..."
š Recommendations:
š« DO NOT send funds to this address
ā ļø This address has been flagged as high risk
š Report the source that gave you this address
Unknown Address (Not Yet Synced)
ā³ Analysis for 0xnew_address_not_in_db
Risk Score: 0/100 - UNKNOWN
Last Updated: N/A
ā³ Address not yet in database
Address not in database. Added to sync queue.
š Recommendations:
ā³ This address will be analyzed soon
š Check again in a few minutes
ā ļø Exercise caution until analysis completes
āļø Configuration
Database Location
Default: ~/.config/crypto-genie/crypto_data.db
Etherscan API Rate Limits
- Free tier: 5 calls/second, 100,000 calls/day
- Each address: 4 API calls (balance, TX count, TX list, code)
- Default delay: 1.5 seconds between addresses (safe for free tier)
Recommended Cron Schedule
# Every 10 minutes, process 30 addresses
*/10 * * * * cd ~/.openclaw/workspace/skills/crypto-genie && source venv/bin/activate && ETHERSCAN_API_KEY="key" python3 sync_worker.py --max-jobs 30 --delay 2.0
# Handles ~4,320 addresses per day
š”ļø Security
- ā Encrypted API key storage - AES-256 with PBKDF2
- ā No third-party sharing - API key only sent to Etherscan
- ā Local processing - All analysis happens on your machine
- ā No telemetry - Zero data collection
- ā Open source - Fully auditable code
š Database Schema
Tables
- addresses - Address info, risk scores, balances, metadata
- transactions - Suspicious transactions with decoded messages
- scam_indicators - Individual red flags per address
- sync_queue - Addresses waiting to be synced
See DATABASE_ARCHITECTURE.md for full technical details.
š Sync Frequency
Default behavior:
- First check ā address queued for sync
- Worker processes queue (manual or cron)
- Subsequent checks ā instant from database
Recommended: Run worker via cron every 5-10 minutes
š» OpenClaw Integration
Via Chat
"Check if 0x1234... is a scam"
"Is this address safe: 0xabc..."
"Verify 0xdef... before I send ETH"
Automatic Detection
When you check an address, OpenClaw:
- Runs
crypto_check_db.py - If not in DB ā queues for sync
- Returns current status
- Suggests checking again after sync
š Troubleshooting
"Address not in database"
Solution: Wait for background worker to sync it, or manually trigger:
python3 sync_worker.py --add-address 0x...
python3 sync_worker.py --max-jobs 1
"Etherscan API key not configured"
Solution: Set API key via environment or setup wizard:
./setup.sh # or
export ETHERSCAN_API_KEY="your_key"
Rate limit errors
Solution: Increase delay between addresses:
python3 sync_worker.py --delay 3.0
š Performance
- ā Check latency: <5ms (database query)
- ā Sync time: ~2 seconds per address (4 API calls)
- ā Database size: ~1KB per address
- ā Capacity: Handles millions of addresses
š Comparison: v1 vs v2
| Feature | v1.1.3 (Old) | v2.0.0 (New) |
|---|---|---|
| Check speed | 2-5 seconds (API calls) | <5ms (database) |
| Rate limits | Yes (every check) | No (checks only query DB) |
| TX message analysis | ā Not analyzed | ā Fully analyzed |
| False negatives | High (missed scams) | Low (deep analysis) |
| Architecture | Direct API calls | Database + background worker |
| API key usage | Every check | Only background worker |
š License
MIT License - Free and open source
š¤ Support
- ClawHub: https://clawhub.com/crypto-genie
- Hackathon: NeoClaw Hackathon 2026
š Credits
Developed by Trust Claw Team for NeoClaw Hackathon 2026
Built with:
- SQLite - Local database
- Etherscan API - Blockchain data
- ChainAbuse API - Community scam reports
- Python asyncio - Async operations
š Stay safe in crypto! Always verify addresses before sending funds.