Quality Manager Qmr

PassAudited by VirusTotal on May 12, 2026.

Overview

Type: OpenClaw Skill Name: quality-manager-qmr Version: 2.1.1 The skill bundle is a legitimate toolset for a Quality Management Representative (QMR) focusing on ISO 13485 compliance. The Python script (management_review_tracker.py) is a standard data processing utility for tracking quality metrics and action items without any network, file system, or execution risks. The documentation (SKILL.md and reference files) provides domain-specific workflows and templates for regulatory oversight without any evidence of prompt injection or malicious intent.

Findings (0)

Artifact-based informational review of SKILL.md, metadata, install specs, static scan signals, and capability signals. ClawScan does not execute the skill or run runtime probes.

What this means

You have less external context for verifying who maintains the skill and where the included helper script comes from.

Why it was flagged

The skill does not provide an external source repository or homepage for provenance review, although no risky install mechanism is present.

Skill content
Source: unknown; Homepage: none
Recommendation

Install only if you trust the registry publisher and review the included script before running it.

What this means

If you run the helper script, it will process local management-review data files that may contain sensitive business or regulatory quality information.

Why it was flagged

The package includes a local Python script intended to be executed for management-review tracking. This is purpose-aligned, but it is still local code execution.

Skill content
Usage:\n    python management_review_tracker.py --data review_data.json\n    python management_review_tracker.py --interactive
Recommendation

Run the script only when needed, review the input data before use, and keep confidential QMS data in approved local or company-controlled storage.