Back to skill
Skillv1.0.0
ClawScan security
Barcelona Fc · ClawHub's context-aware review of the artifact, metadata, and declared behavior.
Scanner verdict
BenignApr 27, 2026, 2:04 PM
- Verdict
- benign
- Confidence
- high
- Model
- gpt-5-mini
- Summary
- This is an instruction-only informational skill about FC Barcelona that requests no credentials, binaries, or installs and its runtime instructions are consistent with its description.
- Guidance
- This skill appears to be safe and purely informational. Before installing, you may want to confirm the publisher/source (currently listed as unknown) if you care about accuracy or provenance of the content; there are no requested credentials or installs and no apparent privacy or security concerns.
Review Dimensions
- Purpose & Capability
- okThe skill's name and description match the SKILL.md content (historical, business, and academy information about FC Barcelona). There are no unrelated requirements (no env vars, binaries, or config paths).
- Instruction Scope
- okSKILL.md is purely informational and includes a small 'read_when' guidance list. It does not instruct the agent to access files, environment variables, external endpoints, or perform actions beyond reading/using the provided content.
- Install Mechanism
- okNo install specification or code files are provided; this is the lowest-risk, instruction-only format and nothing will be written to disk or fetched during install.
- Credentials
- okThe skill declares no required environment variables, credentials, or config paths, and the instructions do not reference any secrets or external service tokens.
- Persistence & Privilege
- okFlags are default (always: false, user-invocable: true, model invocation allowed). Autonomous invocation is permitted (normal for skills) but the skill has no capability that would amplify risk.
