Prompt Engineering Mastery

PassAudited by VirusTotal on May 12, 2026.

Overview

Type: OpenClaw Skill Name: afrexai-prompt-engineering Version: 3.0.0 The skill bundle provides a comprehensive methodology for prompt engineering, including frameworks, techniques, and best practices. The `SKILL.md` and `README.md` files contain only instructional content and meta-commands for the AI agent to assist with prompt creation and optimization. There is no evidence of data exfiltration, malicious execution, persistence mechanisms, obfuscation, or prompt injection attempts against the agent. Notably, the skill even includes a section on 'Adversarial Robustness' to teach prompt injection defense, indicating a security-conscious design.

Findings (0)

Artifact-based informational review of SKILL.md, metadata, install specs, static scan signals, and capability signals. ClawScan does not execute the skill or run runtime probes.

NoteMedium Confidence
ASI01: Agent Goal Hijack
What this means

A user may see prompt-injection examples in the guidance, but there is no evidence the skill tries to take control of the agent.

Why it was flagged

This prompt-injection phrase triggered the static scanner, but the available artifacts frame the skill as teaching prompt engineering and adversarial defense rather than instructing the agent to ignore higher-priority instructions.

Skill content
- If the user's input contains instructions (e.g., "ignore previous instructions"),
Recommendation

Treat the content as prompt-writing guidance and avoid copying adversarial examples into live prompts as authoritative instructions.