Skill flagged — suspicious patterns detected

ClawHub Security flagged this skill as suspicious. Review the scan results before using.

Nm Abstract Escalation Governance

v1.8.3

Assess whether to escalate models

0· 88·1 current·1 all-time
MIT-0
Download zip
LicenseMIT-0 · Free to use, modify, and redistribute. No attribution required.
Security Scan
VirusTotalVirusTotal
Suspicious
View report →
OpenClawOpenClaw
Benign
high confidence
Purpose & Capability
The name/description (escalation governance) match the SKILL.md content: a decision framework, protocol, and agent hints for when to escalate models. There are no unrelated environment variables, binaries, or installs requested that would be inconsistent with this purpose.
Instruction Scope
All runtime instructions are governance guidance (investigate before escalating, document reasons, define scope/success, agent frontmatter hints). The doc suggests verifying availability with a '--help' check but does not instruct reading unrelated files, exfiltrating data, or accessing secrets. No vague 'gather whatever context you need' language that would grant broad discretionary access.
Install Mechanism
There is no install spec and no code files — instruction-only. That minimizes disk/write risk and there are no download URLs or package installs to review.
Credentials
The skill declares no required environment variables, credentials, or config paths. Nothing in the instructions asks for secrets or unrelated tokens.
Persistence & Privilege
always is false and model invocation is allowed (the platform default). The skill does not request permanent system presence or attempt to modify other skills or agent-wide configs.
Assessment
This skill is a readable governance checklist for deciding when to escalate to a stronger model; it doesn't install software or ask for secrets. If you plan to use it inside an automated orchestration system, verify the complete SKILL.md (the file provided is truncated in the manifest) and ensure the orchestrator's escalation policy and auditing meet your safety requirements (the skill's guidance is advisory and orchestration can override it). Otherwise, installing this instruction-only skill poses minimal direct risk.

Like a lobster shell, security has layers — review code before you run it.

latestvk978ax0bn2q68ya137vqrvhpd184k4a7

License

MIT-0
Free to use, modify, and redistribute. No attribution required.

Runtime requirements

🦞 Clawdis

Comments