Research Automation

Security checks across malware telemetry and agentic risk

Overview

This instruction-only skill is transparent about doing recurring web research and saving summaries, with no code, credentials, or hidden install behavior shown.

This appears safe to install as an instruction-only research helper. Before enabling heartbeat scheduling, confirm you want recurring daily or weekly research and workspace file creation. Because it covers health, peptides, and dosing-related topics, verify original sources and avoid treating generated summaries as medical advice.

VirusTotal

VirusTotal findings are pending for this skill version.

View on VirusTotal

Risk analysis

Artifact-based informational review of SKILL.md, metadata, install specs, static scan signals, and capability signals. ClawScan does not execute the skill or run runtime probes.

#
ASI10: Rogue Agents
Low
What this means

If heartbeat scheduling is enabled, the agent may perform research and create files periodically without a fresh prompt each time.

Why it was flagged

The skill explicitly supports recurring autonomous execution, but presents it as part of its stated research-automation purpose.

Skill content
Runs periodically via heartbeat or on-demand.
Recommendation

Enable heartbeat scheduling only if you want recurring research, and review the frequency and topics before adding it to HEARTBEAT.md.

#
ASI06: Memory and Context Poisoning
Low
What this means

Unverified or low-quality web findings could be preserved and influence future content or research decisions.

Why it was flagged

The skill stores web-derived research summaries in persistent markdown files that may be reused later.

Skill content
Research is saved to `research/[topic]/[date].md`
Recommendation

Review saved sources and summaries, especially for health-related claims, before reusing them in content or decisions.

#
ASI02: Tool Misuse and Exploitation
Info
What this means

The agent may retrieve and summarize public web content, including controversial or medically sensitive topics.

Why it was flagged

The skill expects the agent to use web search and source aggregation, which is central to the stated purpose and not hidden.

Skill content
**Web Search**: Queries multiple sources for latest research, protocols, and trends
Recommendation

Treat web-sourced summaries as research leads, not authoritative medical guidance, and check original sources.