Seo Content Writer

Security checks across static analysis, malware telemetry, and agentic risk

Overview

This is a coherent instruction-only SEO writing skill, with the main things to notice being optional SEO/Search Console data use and saving reusable summaries to memory.

This skill appears safe to use for SEO drafting. Before installing, be aware that it may use connected SEO/Search Console data and may save summaries into memory if confirmed; review those outputs if the content involves private client strategy, analytics, or unpublished business information.

Static analysis

No static analysis findings were reported for this release.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal

Risk analysis

Artifact-based informational review of SKILL.md, metadata, install specs, static scan signals, and capability signals. ClawScan does not execute the skill or run runtime probes.

#
ASI06: Memory and Context Poisoning
Low
What this means

Content strategy decisions, drafts, or unresolved issues may persist across sessions and affect later work.

Why it was flagged

The skill explicitly writes reusable conclusions and open loops into persistent memory paths, which can influence future agent work.

Skill content
Promotes: approved angles, messaging choices, missing evidence, and publish blockers to `memory/hot-cache.md` and `memory/open-loops.md`
Recommendation

Review memory entries before saving, avoid storing confidential client or business details unless intended, and periodically clean stale content notes.

#
ASI03: Identity and Privilege Abuse
Info
What this means

If these connectors are available, the agent may rely on private website performance or keyword data when drafting content.

Why it was flagged

The skill may use connected SEO or Search Console integrations, which can expose account- or site-specific analytics data. This is expected for SEO content work, and the artifacts do not show credential capture or unrelated account use.

Skill content
Use `~~SEO tool` and `~~search console` when connected; otherwise ask for keywords, intent, and competitors.
Recommendation

Connect only the intended SEO/Search Console accounts and review any private data included in generated drafts.

#
ASI04: Agentic Supply Chain Vulnerabilities
Low
What this means

The agent could be influenced by off-package documentation if it chooses to retrieve those links.

Why it was flagged

The skill points to external GitHub-hosted reference documents that are not included in the reviewed manifest; if fetched at runtime, those external instructions may change outside this artifact review.

Skill content
Reads: ... prior decisions from [CLAUDE.md](https://github.com/aaron-he-zhu/seo-geo-claude-skills/blob/main/CLAUDE.md) and the shared [State Model](https://github.com/aaron-he-zhu/seo-geo-claude-skills/blob/main/references/state-model.md) when available.
Recommendation

Prefer the packaged reference files when possible, and verify external repository references before relying on them for important workflows.