Superpowers Receiving Code Review

Security checks across static analysis, malware telemetry, and agentic risk

Overview

This instruction-only skill is coherent and has no code or credential access, but it gives special trust to a named reviewer, “Cooper,” that users should confirm fits their workflow.

This appears safe as an instruction-only code review workflow skill. Before installing, check whether you want your agent to treat “Cooper” as a trusted authority; if not, remove or customize that section.

Static analysis

No static analysis findings were reported for this release.

VirusTotal

VirusTotal findings are pending for this skill version.

View on VirusTotal

Risk analysis

Artifact-based informational review of SKILL.md, metadata, install specs, static scan signals, and capability signals. ClawScan does not execute the skill or run runtime probes.

What this means

The agent may treat feedback from “Cooper” as more authoritative than other reviewers, which may not match every user’s project or team structure.

Why it was flagged

The skill assigns special trust and decision priority to a named source. This is visible and related to the code-review purpose, but it can shape how the agent treats feedback and whose guidance it prioritizes.

Skill content
### From Cooper
- **Trusted** — implement after understanding
...
**IF conflicts with Cooper's prior decisions:** Stop and discuss with Cooper first
Recommendation

Install only if this authority model fits your workflow, or edit the skill to remove or replace the Cooper-specific rules.