Back to skill
Skillv1.0.0

ClawScan security

Cost Opt · ClawHub's context-aware review of the artifact, metadata, and declared behavior.

Scanner verdict

BenignMay 1, 2026, 8:28 AM
Verdict
Benign
Confidence
high
Model
gpt-5.5
Summary
This is an instruction-only cloud cost optimization workflow that does not request credentials, install code, persist data, or hide risky behavior.
Guidance
This skill appears safe to install as a guidance-only workflow. As with any cloud cost advice, review recommendations before making infrastructure changes, especially rightsizing, reservation purchases, or operational guardrail changes.

Review Dimensions

Purpose & Capability
okThe guidance is coherent with the stated purpose of cloud cost review, including rightsizing, reservations, waste reduction, governance, and verification.
Instruction Scope
okThe skill frames itself as an optional workflow, asks whether the user wants to follow it, and tells the agent to adapt if the user prefers a different style.
Install Mechanism
okThere is no install spec, no code, no required binaries, and no package or script execution.
Credentials
okThe artifacts do not request cloud credentials, local files, account access, or infrastructure mutation authority; operational advice is paired with checks, constraints, and rollback awareness.
Persistence & Privilege
okNo persistence, background activity, privileged configuration, credential use, or stored memory behavior is described.