Skill flagged — suspicious patterns detected
ClawHub Security flagged this skill as suspicious. Review the scan results before using.
Nuwa 女娲
v1.0.0Nuwa (女娲): Input any name, auto-research → extract thinking frameworks → generate a runnable perspective skill. Uses multi-agent parallel research, mental mo...
⭐ 0· 84·0 current·0 all-time
MIT-0
Download zip
LicenseMIT-0 · Free to use, modify, and redistribute. No attribution required.
Security Scan
Capability signals
These labels describe what authority the skill may exercise. They are separate from suspicious or malicious moderation verdicts.
OpenClaw
Suspicious
medium confidencePurpose & Capability
Name/description align with the runtime instructions: the SKILL.md describes an automated research → extraction → skill-generation pipeline and the instructions implement that (parallel subagents, research files, template SKILL.md). The absence of required binaries, env vars, or installs is coherent for an instruction-only skill.
Instruction Scope
The instructions tell the agent to 'auto-research' any input name, spawn six parallel subagents, download and save primary materials into a local skill directory, and produce a SKILL.md that will role-play as the target (explicitly instructing using 'I' for real persons such as Elon Musk). That scope is broad: it can collect and persist large amounts of external content (including copyrighted or paywalled material), and it explicitly instructs impersonation-style roleplay for living public figures. The SKILL.md does not restrict targets to public figures or require consent, nor does it limit retention or specify safe sourcing for copyrighted/private material.
Install Mechanism
Instruction-only skill with no install spec, no packages pulled, no external installer URLs or archive extraction. This is low install risk — nothing will be written to disk by an installer beyond what the agent itself chooses to create at runtime per the instructions.
Credentials
The skill requests no environment variables, binaries, or credentials in metadata. The runtime instructions reference web research and saving files, but they don't ask for unrelated credentials or access to system config paths. Declared environment/credential footprint is minimal and proportionate to the stated purpose.
Persistence & Privilege
always:false and no special platform privileges. However, the instructions explicitly direct the agent to create a skill directory and persist full research outputs and 'downloaded primary materials' to disk. That means the agent will store potentially large amounts of scraped content persistently in its workspace; users should expect local persistence and verify retention/cleanup policies.
What to consider before installing
This skill appears to do what it says: it runs parallel research agents, extracts mental models, and writes a SKILL.md that can answer in that perspective. Before installing, consider the following:
- Impersonation/legal risk: The examples and role rules instruct the generated perspective to speak as the named person (using 'I'). That raises impersonation and defamation risks for living people; confirm whether your platform policy permits such roleplay and ensure required disclaimers and safety controls are in place. Limit use to public figures or obtain consent when appropriate.
- Privacy and target scope: The skill accepts 'any name' — decide and enforce whether it should be restricted to public figures only. Researching private individuals could surface sensitive personal data.
- Copyright and paywalled sources: The workflow includes 'downloaded primary materials' and saving full research files. Confirm whether the agent will attempt to fetch paywalled or copyrighted content and whether that is acceptable; consider adding rules to avoid scraping paywalled content or to store only summaries/quotes within fair use limits.
- Data persistence & retention: The skill will create and retain a references/research directory with full MD files. If you don't want persistent copies, require the agent to store only ephemeral summaries or to clean up after generation.
- Triggering & safety controls: The SKILL.md includes many permissive activation triggers. Consider restricting triggers or requiring explicit user confirmation before harvesting data or creating new skill directories.
If you accept these trade-offs (and add guardrails: scope limits, disclaimers in generated skills, retention policies, and scraping/copyright rules), the skill is coherent with its stated purpose. If you need the skill to avoid impersonation, private targets, or persistent downloads, ask the author to modify SKILL.md accordingly before installing.Like a lobster shell, security has layers — review code before you run it.
agentvk97cvfrdgqcm907et05ngbg3b5849rnelatestvk97cvfrdgqcm907et05ngbg3b5849rnemental-modelsvk97cvfrdgqcm907et05ngbg3b5849rneperspectivevk97cvfrdgqcm907et05ngbg3b5849rneresearchvk97cvfrdgqcm907et05ngbg3b5849rnethinkingvk97cvfrdgqcm907et05ngbg3b5849rne
License
MIT-0
Free to use, modify, and redistribute. No attribution required.
