Back to skill
Skillv0.1.0
ClawScan security
Meeting Notes Cleaner Skill · ClawHub's context-aware review of the artifact, metadata, and declared behavior.
Scanner verdict
BenignApr 30, 2026, 6:55 AM
- Verdict
- benign
- Confidence
- high
- Model
- gpt-5-mini
- Summary
- This is an instruction-only, template-focused skill that requests no credentials or installs and its runtime instructions are consistent with its stated purpose.
- Guidance
- This skill appears coherent and low-risk: it only provides templates and instructions and asks for no secrets or installs. Before installing, avoid pasting sensitive or proprietary meeting content into the skill's inputs. Note the SKILL.md includes a PayPal donation link (harmless for runtime but external); if you prefer stronger provenance, prefer skills from publishers you trust or with a public homepage/source. Otherwise it is safe to install and use for non-sensitive note-cleaning tasks.
Review Dimensions
- Purpose & Capability
- okName, description, and SKILL.md all describe a writing/templates helper; there are no environment variables, binaries, install steps, or other requirements inconsistent with that purpose.
- Instruction Scope
- okSKILL.md confines the agent to producing templates, checklists, plans, and draft copy and explicitly forbids collecting secrets or proposing remote installers. It does not instruct the agent to read unrelated files, environment variables, or transmit data to external services as part of normal operation.
- Install Mechanism
- okNo install spec and no code files are present (instruction-only), so nothing will be written to disk or downloaded during install.
- Credentials
- okThe skill requests no environment variables, credentials, or config paths. The absence of secrets and the explicit safety rules are proportionate to the stated functionality.
- Persistence & Privilege
- okalways is false and the skill is user-invocable; autonomous invocation (disable-model-invocation=false) is the normal platform default and is not combined with broad privileges or credentials here.
