Back to skill
Skillv1.0.0

ClawScan security

LYGO Champion: SANCORA — Unified Minds · ClawHub's context-aware review of the artifact, metadata, and declared behavior.

Scanner verdict

BenignMay 1, 2026, 5:28 AM
Verdict
Benign
Confidence
high
Model
gpt-5.5
Summary
This is a coherent advisory persona skill with no declared credentials, installs, network access, persistence, or user-data mutation.
Guidance
This skill appears safe to install as an advisory persona. If you use the separately linked LYGO-MINT Verifier, review that other skill independently before installing or using it.

Review Dimensions

Purpose & Capability
okThe artifacts consistently describe a persona/helper for reconciliation, shared context, and ethical clarity; included scripts only read local reference files to validate or display the persona hash.
Instruction Scope
okThe behavior contract is bounded to advisory output, explicitly says 'Helper, not controller,' and includes constraints such as separating observed/inferred/unknown and avoiding coercion or wrongdoing guidance.
Install Mechanism
okNo install specification, required binaries, environment variables, or credentials are declared. The optional Python scripts are simple local self-check/hash display utilities.
Credentials
okThe skill does not request broad file access, network permissions, account access, shell authority, or mutation capabilities beyond reading its own bundled reference files.
Persistence & Privilege
okNo artifact-backed persistence, background execution, credential use, privilege escalation, memory storage, or autonomous action mechanism is present.