{"skill":{"slug":"eason-skill-vetting","displayName":"Eason Skill Vetting","summary":"Vet ClawHub skills for security and utility before installation. Use when considering installing a ClawHub skill, evaluating third-party code, or assessing w...","tags":{"latest":"1.0.0"},"stats":{"comments":0,"downloads":360,"installsAllTime":2,"installsCurrent":2,"stars":0,"versions":1},"createdAt":1773238807467,"updatedAt":1778491832663},"latestVersion":{"version":"1.0.0","createdAt":1773238807467,"changelog":"Skill-vetting 1.0.0 introduces a comprehensive, step-by-step workflow for securely evaluating ClawHub skills.\n\n- Provides detailed instructions for downloading, automated scanning, and manual security review of ClawHub skills.\n- Emphasizes AI prompt injection risks, offering strict, immutable rules against trusting or acting on in-file guidance.\n- Includes practical heuristic checks and red flag lists for identifying malicious or deceptive code.\n- Outlines a utility assessment to gauge whether a new skill adds unique value over existing tools.\n- Supplies guidance on post-installation monitoring and explains the limitations and possible bypasses of the included regex-based scanner.","license":"MIT-0"},"metadata":null,"owner":{"handle":"eathon","userId":"s17fw08axpvfe98403bhpc0wv583q166","displayName":"eathon","image":"https://avatars.githubusercontent.com/u/10878086?v=4"},"moderation":{"isSuspicious":false,"isMalwareBlocked":false,"verdict":"clean","reasonCodes":["review.llm_review"],"summary":"Review: review.llm_review","engineVersion":"v2.4.24","updatedAt":1778491832663}}