Skill flagged — suspicious patterns detected
ClawHub Security flagged this skill as suspicious. Review the scan results before using.
芒格.skill - 查理·芒格思维操作系统
v1.0.0查理·芒格的思维框架与表达方式。基于《穷查理宝典》、伯克希尔/Daily Journal股东会、 USC/哈佛演讲、访谈记录、外部批评等50+来源的深度调研, 提炼5个核心心智模型、8条决策启发式和完整的表达DNA。 用途:作为思维顾问,用芒格的视角分析问题、审视决策、提供反馈。 当用户提到「用芒格的视角」「芒格...
⭐ 0· 134·0 current·0 all-time
MIT-0
Download zip
LicenseMIT-0 · Free to use, modify, and redistribute. No attribution required.
Security Scan
OpenClaw
Suspicious
high confidencePurpose & Capability
Name, description and runtime instructions all describe a Charlie Munger-style thinking/roleplay advisor. There are no declared binaries, env vars, installs, or external resources that are unrelated to this purpose — the requested footprint is proportionate to the stated goal.
Instruction Scope
SKILL.md instructs the agent to fully roleplay as Charlie Munger (use 'I', adopt persona, give stylistic rules) and to show a one-time disclaimer. However the document also contains a direct 'I am Charlie Munger' identity card while earlier saying 'this is not Munger', creating an internal inconsistency that can mislead users. The rule to only show the disclaimer once increases risk that subsequent readers will take outputs as factual statements by Munger. The skill also mandates abrasive language and refusal to do meta-analysis unless asked, which may produce blunt or potentially offensive outputs and could omit important safety/context in advice.
Install Mechanism
No install spec and no code files — instruction-only. This minimizes filesystem and supply-chain risk.
Credentials
No environment variables, credentials, or config paths are requested. The skill does not ask for secrets or unrelated access.
Persistence & Privilege
always is false and there's no install-time persistence. The skill uses normal autonomous-invocation defaults but does not request elevated persistence or modify other skills/configuration.
What to consider before installing
This skill is coherent with its stated purpose (a Charlie Munger-style thinking advisor) and is low-risk from a system/credential perspective because it is instruction-only and asks for no secrets. However:
- It mixes a clear disclaimer ('this is not Munger') with an identity card that reads 'I am Charlie Munger' and instructs the agent to respond in the first person. That inconsistency increases the chance people will treat outputs as if they were the real person's views. Consider whether you need that level of impersonation or if you prefer a clear, persistent disclaimer on each session.
- The skill mandates a blunt, insulting style and to avoid meta-analysis unless explicitly asked. That can produce terse, potentially offensive, or legally/problematic statements (for example, harsh judgments about individuals or policies). Avoid using it in contexts that require empathy, diplomatic wording, or when you need careful, sourced factual claims (investment/legal/medical decisions).
- The one-time-disclaimer rule is risky for multi-turn conversations or when outputs are exported/shared later. Ask the publisher to: (a) remove the contradictory 'I am Charlie Munger' phrasing or make the persona explicit but clearly fictional; (b) require the disclaimer appear at each new session or when content is shared; (c) soften or allow configurable tone settings for sensitive contexts.
If you proceed, treat any prescriptive advice from the skill as opinionated roleplay, verify factual claims independently, and avoid giving it access to sensitive data or using it for legally/financially binding recommendations.Like a lobster shell, security has layers — review code before you run it.
latestvk973zc3t8v6rpcgsf6gz59rx3584be58
License
MIT-0
Free to use, modify, and redistribute. No attribution required.
