SEC Filing Scanner for M&A

Security checks across malware telemetry and agentic risk

Overview

This instruction-only skill appears benign because it guides analysis of public SEC filings and does not request credentials, installation, local file access, persistence, or account-changing authority.

Before installing, understand that this skill is meant to retrieve and analyze public SEC filing data. It does not appear to access private data or modify accounts, but any conclusions it produces for M&A diligence should still be independently verified.

VirusTotal

VirusTotal findings are pending for this skill version.

View on VirusTotal

Risk analysis

Artifact-based informational review of SKILL.md, metadata, install specs, static scan signals, and capability signals. ClawScan does not execute the skill or run runtime probes.

#
ASI02: Tool Misuse and Exploitation
Info
What this means

The agent may make public SEC EDGAR requests for companies or filings the user asks about.

Why it was flagged

The skill directs the agent to use external SEC API endpoints. This is disclosed, public, and directly related to the filing-analysis purpose.

Skill content
SEC EDGAR API (free, no API key, 10 req/sec rate limit):
Recommendation

Use the skill for intended SEC filing research and be mindful of the documented SEC rate limit.