Back to skill
Skillv2.1.1
ClawScan security
Board Deck Builder · ClawHub's context-aware review of the artifact, metadata, and declared behavior.
Scanner verdict
BenignMar 10, 2026, 7:31 PM
- Verdict
- benign
- Confidence
- high
- Model
- gpt-5-mini
- Summary
- The skill is an instruction-only board-deck template/guide and its requirements and behavior are consistent with that purpose — it doesn't request credentials, install code, or instruct the agent to access unrelated system resources.
- Guidance
- This skill is internally consistent and low-risk because it's instruction-only and asks for no credentials. Before using it, consider: (1) do not paste confidential customer lists, unreleased financial models, or private PII into prompts unless you trust where outputs will be stored/shared; (2) verify any numeric placeholders or automated fills — the instructions say to not invent numbers, but the agent may still hallucinate figures, so cross-check all metrics; (3) confirm where the generated deck will be saved or sent (avoid automatic uploads to external services you don't control); and (4) review the final deck for sensitive disclosures before sharing with external parties or board portals.
Review Dimensions
- Purpose & Capability
- okName and description match the provided materials: SKILL.md, templates, and frameworks are all about drafting board/investor decks. There are no unrelated required binaries, env vars, or config paths.
- Instruction Scope
- okRuntime instructions are limited to structuring content, narrative frameworks, and templates. They do not instruct reading arbitrary files, accessing external endpoints, exfiltrating data, or using credentials. The guidance explicitly warns not to invent numbers and to use placeholders when data is unavailable.
- Install Mechanism
- okNo install spec and no code files requiring download or execution. This is the lowest-risk pattern (instruction-only).
- Credentials
- okThe skill declares no required environment variables, credentials, or config paths — proportional to its stated purpose of producing slide text and templates.
- Persistence & Privilege
- okDefault privileges only: always:false and normal model invocation behavior. The skill does not request persistent presence or permissions to modify other skills or system settings.
