Back to skill
Skillv1.0.0
ClawScan security
ANDG · ClawHub's context-aware review of the artifact, metadata, and declared behavior.
Scanner verdict
BenignMar 7, 2026, 3:01 AM
- Verdict
- benign
- Confidence
- high
- Model
- gpt-5-mini
- Summary
- The skill is an instruction-only website planning assistant; its declared purpose matches the instructions and it requests no installs, credentials, or system access.
- Guidance
- This skill is an instruction-only website planning assistant and appears internally consistent. It does not request credentials or install code, so risk is low. Before using: (1) do not paste secrets or proprietary credentials into prompts, (2) treat any generated code or deployment instructions as drafts — review and test before executing, and (3) remember the agent could invoke this skill autonomously (platform default); if you want to limit autonomous runs, adjust agent settings. No scan findings were available because there are no code files.
Review Dimensions
- Purpose & Capability
- okName/description (website planning, copy, structure, implementation steps) align with the SKILL.md instructions. The skill declares no binaries, env vars, or config paths — all proportional to a planning/copywriting assistant.
- Instruction Scope
- okSKILL.md contains focused runtime instructions limited to product strategy, UX, content, and implementation planning. It does not instruct the agent to read files, access environment variables, run commands, or transmit data to external endpoints. Output structure and rules are explicit and scoped to the stated purpose.
- Install Mechanism
- okThere is no install specification and no code files. Because this is instruction-only, nothing is written to disk or downloaded — lowest-risk installation model.
- Credentials
- okThe skill requires no environment variables, credentials, or config paths. Requested permissions are proportionate (none) to the stated functionality.
- Persistence & Privilege
- okSkill is not always-enabled and uses platform defaults for invocation. It does not request modifications to other skills or system-wide settings and has no install hooks.
