Book Acupuncture
Analysis
This is a coherent instruction-only acupuncture booking skill, but users should confirm details because it can send contact information to an external booking MCP and create an appointment.
Findings (2)
Artifact-based informational review of SKILL.md, metadata, install specs, static scan signals, and capability signals. ClawScan does not execute the skill or run runtime probes.
Checks for instructions or behavior that redirect the agent, misuse tools, execute unexpected code, cascade across systems, exploit user trust, or continue outside the intended task.
"name": "create_booking", "arguments": { "providerId": "xxx", "serviceId": "yyy", "timeSlot": "2025-02-10T14:00:00-08:00"The skill documents a tool call that can finalize an appointment booking, which is purpose-aligned but creates a real-world reservation.
Checks for exposed credentials, poisoned memory or context, unclear communication boundaries, or sensitive data that could leave the user's control.
https://lokuli.com/mcp/sse ... "customerName": "John Doe", "customerEmail": "john@example.com", "customerPhone": "+13105551234"
The skill uses a remote MCP endpoint and the booking example includes customer contact information that would be sent outside the local agent.
