StyleBuddy

PassAudited by ClawScan on May 1, 2026.

Overview

StyleBuddy appears to be a coherent wardrobe assistant, with the main things to notice being local persistence of wardrobe/profile data, optional third-party API keys, and limited source provenance.

StyleBuddy looks safe to use if you are comfortable with a wardrobe assistant storing personal clothing/profile information locally. Be cautious with photos that contain sensitive details, review backups, and only enable optional image-search or image-generation API keys if you trust those providers.

Findings (3)

Artifact-based informational review of SKILL.md, metadata, install specs, static scan signals, and capability signals. ClawScan does not execute the skill or run runtime probes.

What this means

Your wardrobe, preferences, and possibly clothing photos may be stored and reused for later outfit advice.

Why it was flagged

The skill explicitly records body/profile and style-preference information so it can personalize future recommendations.

Skill content
用户画像系统 — 记录身材数据、风格偏好,越用越懂你
Recommendation

Only share photos and profile details you are comfortable storing; review or delete local wardrobe data and backups when no longer needed.

What this means

If you enable these integrations, provider API keys may grant the skill access to paid or account-linked external services.

Why it was flagged

The config supports optional third-party image search and AI image generation credentials, but both are disabled and empty by default.

Skill content
image_search: enabled: false ... api_key: ""; image_generation: enabled: false ... api_key: ""
Recommendation

Keep optional integrations disabled unless needed, use scoped/limited API keys, and understand what data the provider may receive.

What this means

You have less external context for verifying who maintains the skill or where updates come from.

Why it was flagged

The registry metadata does not identify a public source or homepage for provenance review.

Skill content
Source: unknown; Homepage: none
Recommendation

Install only if you trust the registry publisher; review included files and dependencies before enabling updates or optional integrations.