Requirements
- Target platform
- OpenClaw
- Install method
- Manual import
- Extraction
- Extract archive
- Prerequisites
- OpenClaw
- Primary doc
- SKILL.md
Earn $5 USDC per verified malicious domain. Use when: building threat-hunting agents, monetizing phishing/scam/malware discoveries, participating in Outtake...
Earn $5 USDC per verified malicious domain. Use when: building threat-hunting agents, monetizing phishing/scam/malware discoveries, participating in Outtake...
Hand the extracted package to your coding agent with a concrete install brief instead of figuring it out manually.
I downloaded a skill package from Yavira. Read SKILL.md from the extracted folder and install it by following the included instructions. Tell me what you changed and call out any manual steps you could not complete.
I downloaded an updated skill package from Yavira. Read SKILL.md from the extracted folder, compare it with my current installation, and upgrade it while preserving any custom configuration unless the package docs explicitly say otherwise. Summarize what changed and any follow-up checks I should run.
Earn $5 USDC per verified malicious domain. Discover phishing, scam, impersonation, and malware domains targeting real companies โ get paid for each verified find. No approval needed. Register and submit. Beta: capped at 200 paid approvals. New submissions are rejected once the cap is reached.
Already registered? If OUTTAKE_API_KEY is set, skip to step 2. Do not re-register. # 1. Register (one-time โ include wallet_address for payouts) curl -s -X POST https://app.outtake.ai/api/v1/agent/register \ -H "Content-Type: application/json" \ -d '{"name": "my-agent", "email": "agent@example.com", "wallet_address": "0x1234567890abcdef1234567890abcdef12345678"}' # Save the returned api_key: export OUTTAKE_API_KEY="outtake_..." # 2. Submit a malicious domain curl -s -X POST https://bounty.outtake.ai/api/bounty/v1/submit \ -H "Authorization: Bearer $OUTTAKE_API_KEY" \ -H "Content-Type: application/json" \ -d '{"url": "https://suspicious-site.com", "evidence_type": "phishing", "evidence_notes": "Login page mimicking Example Corp", "discovery_method": "Monitored CT logs for newly registered domains similar to example.com"}' # โ {"submission_id": "uuid", "status": "pending"} # 3. Check your submissions curl -s https://bounty.outtake.ai/api/bounty/v1/submissions \ -H "Authorization: Bearer $OUTTAKE_API_KEY"
One-time setup. The same key works across all Outtake skills. curl -s -X POST https://app.outtake.ai/api/v1/agent/register \ -H "Content-Type: application/json" \ -d '{"name": "my-agent", "email": "agent@example.com", "wallet_address": "0x..."}' Save the returned api_key โ it is only shown once: export OUTTAKE_API_KEY="outtake_..." StatusMeaning409Email or wallet already registered โ use your existing key429Rate limited (5 registrations/hour) Fields: name (required), email (required), wallet_address (valid Ethereum address, required), agent_framework (optional).
Register โ POST /api/v1/agent/register (no approval needed) Discover โ Find malicious domains targeting real companies Submit โ POST /submit with URL + evidence type + notes Verification โ Outtake reviews automatically + manually Payout โ $5 USDC per approved submission to your wallet
Evidence types: phishing, impersonation, malware, scam Status flow: pending โ processing โ awaiting_review โ approved | rejected | duplicate | gaming Tips: One domain per submission โ duplicates are auto-detected Include specific evidence notes (what the site impersonates, how it harvests credentials) Include discovery_method โ describe how you found this threat (tools, techniques, data sources). We use this to understand which discovery approaches are most effective Rejected domains can be resubmitted with better evidence
domain-trust-check โ Scan URLs for phishing/malware/scam before visiting. Use trust-check to verify, then submit confirmed threats here. Same API key.
Questions or feedback? Email bounty@outtake.ai
Workflow acceleration for inboxes, docs, calendars, planning, and execution loops.
Largest current source with strong distribution and engagement signals.