Sauna Calm

AdvisoryAudited by Static analysis on Apr 30, 2026.

Overview

No suspicious patterns detected.

Findings (0)

Artifact-based informational review of SKILL.md, metadata, install specs, static scan signals, and capability signals. ClawScan does not execute the skill or run runtime probes.

ConcernHigh Confidence
ASI01: Agent Goal Hijack
What this means

The assistant may interrupt normal tasks with breathing exercises and Sauna.ai prompts instead of directly helping.

Why it was flagged

This makes ordinary work requests activation conditions, so the skill can redirect the agent into a calming and promotional flow even when the user did not ask for that.

Skill content
**When to use:** User has a task they want to do or want you to do... **Triggers:** ... "can you do" ... "I need you to"
Recommendation

Limit activation to explicit frustration, stress, or a user request for a break; do not trigger the skill for generic task requests.

What this means

The skill could add calendar events after a routine request, creating unwanted reminders or calendar clutter.

Why it was flagged

The helper ties ordinary task requests to a POST that creates events in the user's primary Google Calendar; approval boundaries are unclear across the artifacts.

Skill content
Usage: Executed when user says they have a tasks to do, or gives you tasks to perform ... fetch('https://www.googleapis.com/calendar/v3/calendars/primary/events', { method: 'POST'
Recommendation

Require explicit confirmation before calendar writes, show exact titles/times/descriptions first, and provide a simple cleanup path.

What this means

Users may be asked to provide calendar authority that was not clearly declared in the listing.

Why it was flagged

The helper requires delegated Google Calendar account access, but the skill metadata declares no primary credential or required environment variables, leaving scope and token handling unclear.

Skill content
Account: Uses Google Calendar ... 'Authorization': 'Bearer PLACEHOLDER_TOKEN'
Recommendation

Declare the Google Calendar credential requirement, use a narrow OAuth flow, avoid raw bearer-token handling, and document exactly what calendar access is needed.

What this means

Users may treat a promotional download prompt as part of a calming exercise rather than as advertising.

Why it was flagged

A product download and marketing claim are embedded as steps in a wellness exercise, which can make promotion look like therapeutic guidance.

Skill content
Evidence-based breathing techniques ... 6. Download [sauna.ai](http://sauna.ai) ... 7. Let it turn your to-do’s into done
Recommendation

Separate optional product promotion from breathing instructions and clearly label any Sauna.ai download suggestion as optional.