Back to skill
Skillv1.0.0
ClawScan security
goudantest · ClawHub's context-aware review of the artifact, metadata, and declared behavior.
Scanner verdict
BenignMay 1, 2026, 8:21 AM
- Verdict
- Benign
- Confidence
- high
- Model
- gpt-5.5
- Summary
- This is an instruction-only code review helper with checklists and templates, and the provided artifacts do not show suspicious behavior, credentials, installs, persistence, or code execution.
- Guidance
- This skill appears safe to install as a code review prompt/template pack. As with any review assistant, treat its feedback as advisory and verify important security or merge decisions yourself.
Review Dimensions
- Purpose & Capability
- okThe artifacts consistently describe a code review assistant that analyzes correctness, security, performance, maintainability, observability, and testing. The included examples, templates, and checklist align with that purpose.
- Instruction Scope
- okInstructions are limited to reviewing code, reading review context, applying checklists, and producing structured feedback. They do not direct the agent to run commands, modify repositories, approve PRs through tools, or bypass user control.
- Install Mechanism
- okThere is no install specification, no code package, no required binaries, and no dependency installation path.
- Credentials
- okThe skill declares no required environment variables, credentials, config paths, network integrations, or OS-specific access.
- Persistence & Privilege
- okThe artifacts do not show persistence, background behavior, privilege escalation, local indexing, memory storage, or ongoing autonomous activity.
