Back to skill
Skillv1.0.0

ClawScan security

Leadership · ClawHub's context-aware review of the artifact, metadata, and declared behavior.

Scanner verdict

BenignMar 8, 2026, 12:38 PM
Verdict
benign
Confidence
medium
Model
gpt-5-mini
Summary
This is an instruction-only leadership/coaching skill whose requirements and instructions are consistent with its stated purpose and it does not request credentials or install code, but the publisher/source is unknown so exercise normal caution.
Guidance
This skill appears coherent and purely content-based (no code, no credentials). Before installing: (1) consider the publisher is unknown — prefer skills from known sources if you need a trust guarantee; (2) review the full SKILL.md yourself to ensure it doesn't prompt the agent to collect or transmit sensitive personnel data; (3) avoid feeding real confidential employee information into the skill until you confirm how your agent/platform logs, stores, or shares skill interactions; (4) test it first with non-sensitive examples; and (5) monitor usage and revoke the skill if it behaves unexpectedly.

Review Dimensions

Purpose & Capability
okThe name/description promise leadership coaching, and the SKILL.md contains prose-guidance, conversation frameworks, feedback templates and decision heuristics — all aligned with a coaching skill. There are no unrelated environment variables, binaries, or config paths requested.
Instruction Scope
okThe provided SKILL.md is content/instruction text (no runtime commands, no file reads, no references to external endpoints or secrets). It appears to constrain the agent to provide coaching, templates, and conversation structure rather than collecting system data.
Install Mechanism
okNo install spec or code files are present (instruction-only). Nothing will be downloaded or written to disk by an installer as part of this skill.
Credentials
okThe skill declares no required environment variables, credentials, or config paths. There is no request for unrelated secrets or system access that would be disproportionate for a leadership coaching tool.
Persistence & Privilege
okThe skill does not request always:true and leaves autonomous invocation at the platform default. It does not request to modify other skills or system-wide configs. Note: as with any skill, agent-platform logs/retention policies are outside the skill content and should be considered separately.