Back to skill
Skillv1.0.0

ClawScan security

巴别渊 · ClawHub's context-aware review of the artifact, metadata, and declared behavior.

Scanner verdict

BenignMar 10, 2026, 7:13 AM
Verdict
benign
Confidence
high
Model
gpt-5-mini
Summary
The skill is an instruction-only text-transformer that coherently matches its description and does not request credentials, installs, or filesystem access.
Guidance
This skill is coherent with its stated purpose: it will take any input and return a deliberately degraded, semantically corrupted text stream and will not add explanations or safety disclaimers. Before enabling or invoking it, consider: (1) do not feed secrets, private data, or critical technical instructions (the output will be corrupted and could be misleading); (2) because it explicitly avoids safety/disclaimer language, review outputs before sharing publicly; (3) if you don’t want autonomous agent runs using it, restrict who/what can call the skill or require an explicit trigger; and (4) test it on harmless examples to confirm the style/degree of degradation matches your needs.

Review Dimensions

Purpose & Capability
okThe name and description promise deliberate semantic degradation of input text; the skill is instruction-only and only asks the agent to produce corrupted text. There are no unrelated requirements (no env vars, binaries, or installs).
Instruction Scope
noteThe SKILL.md explicitly tells the agent to accept any input type (including technical/academic content), to never explain or add meta commentary, and to 'avoid safety-disclaimer tone.' This is consistent with the stated artistic purpose but means the skill will not preserve meaning or provide safety/contextual warnings. Users should be aware it will process any content fed to it (including sensitive or technical material) and produce intentionally obfuscated outputs.
Install Mechanism
okNo install spec and no code files — the skill is instruction-only. Nothing is written to disk and no external packages or downloads are performed.
Credentials
okThe skill requires no environment variables, credentials, or config paths. Requested access is proportional (none).
Persistence & Privilege
okalways is false and autonomous invocation is allowed (platform default). The skill does not request permanent presence or modification of other skills or system settings.