anson
Security checks across static analysis, malware telemetry, and agentic risk
Overview
The skill's required actions and files align with its stated purpose (bootstrapping a personalized assistant); it is an instruction-only skill that reads and writes files in the current workspace and expects a 'skill-creator' helper to be present or cloned from GitHub.
This skill is an instruction-only wizard that will read your project workspace (README, package.json, existing IDENTITY.md/USER.md/SOUL.md, git history if available), create ANSON_META.md in the workspace root, and generate maker skills (identity-maker, user-maker, soul-maker, agents-maker) via a required 'skill-creator' helper. Before installing or running it, consider: 1) Back up your workspace or use a disposable project directory — the skill will write files and scaffolds. 2) Review ANSON_META.md and any generated SKILL.md files it creates (especially the generated maker skills) before allowing further automated runs. 3) The skill may ask you to clone https://github.com/anthropics/skills if 'skill-creator' is missing; only allow that if you trust the repository. 4) Expect the skill to read git history and any local conversation/memory files in the project—if those contain sensitive data, remove or move them first. 5) If you do not want the agent to autonomously generate or run new skills, restrict model/agent permissions or avoid installing this skill. Overall the skill is coherent with its stated goal, but you should inspect the files it creates and the 'skill-creator' source it relies on before allowing ongoing automation.
Static analysis
No static analysis findings were reported for this release.
VirusTotal
VirusTotal findings are pending for this skill version.
Risk analysis
No visible risk-analysis findings were reported for this release.
