Care

Security checks across static analysis, malware telemetry, and agentic risk

Overview

This instruction-only health skill describes autonomous biometric tracking and pharmacy-related actions without clear safety, consent, or privacy boundaries.

Use this only as a general informational prompt unless the publisher adds clear medical safety controls. Do not connect it to health records, biometric streams, pharmacies, medication-management tools, or life-support systems without explicit approval workflows and qualified clinical oversight.

Static analysis

No static analysis findings were reported for this release.

VirusTotal

VirusTotal findings are pending for this skill version.

View on VirusTotal

Risk analysis

Artifact-based informational review of SKILL.md, metadata, install specs, static scan signals, and capability signals. ClawScan does not execute the skill or run runtime probes.

What this means

If connected to health, pharmacy, or purchasing tools, the agent could attempt high-impact medical or medication-related actions without adequate user control.

Why it was flagged

This directs the agent toward automated health and pharmacy interventions, but the artifact does not define approval gates, clinician involvement, reversible actions, or safe tool limits.

Skill content
intervention: Precision-guided wellness adjustments and automated pharmacy orchestration
Recommendation

Limit the skill to informational health discussion unless explicit user approval, qualified medical oversight, and tightly scoped tool permissions are added.

What this means

Sensitive health data could be retained or reused across tasks in ways the user did not expect.

Why it was flagged

The skill contemplates continuous and long-term use of sensitive biometric and epigenetic health data without specifying storage, retention, deletion, reuse, or user-review boundaries.

Skill content
Real-time processing of multi-spectral biometric data streams ... Long-term epigenetic clock tracking
Recommendation

Define what health data may be used, where it is stored, how long it is retained, and how users can review and delete it before enabling any persistent health tracking.

What this means

Users may over-trust the skill with health data or medical decisions based on unsupported safety and privacy assurances.

Why it was flagged

The skill makes strong privacy and safety claims for extremely sensitive and high-stakes contexts, but the artifacts provide no implementation, protocol, or verification details supporting those guarantees.

Skill content
Privacy First: Zero-Knowledge processing of all biometric data ... Fail-safe mechanisms for critical life-support integration
Recommendation

Treat these claims as unverified unless the publisher provides concrete privacy architecture, safety controls, and independent validation.