Back to skill
Skillv1.0.0
ClawScan security
Klein Tools · ClawHub's context-aware review of the artifact, metadata, and declared behavior.
Scanner verdict
BenignApr 28, 2026, 11:06 AM
- Verdict
- benign
- Confidence
- high
- Model
- gpt-5-mini
- Summary
- This is an instruction-only, informational skill about Klein Tools that requests no credentials, installs, or filesystem access and its behavior matches its description.
- Guidance
- This skill is informational and appears coherent and low-risk: it neither installs software nor asks for secrets. The only minor trust note is that the skill's source/homepage metadata is missing; if provenance matters to you, prefer skills with a verifiable publisher or public homepage. As always, avoid entering any sensitive credentials into any skill unless it explicitly requires and documents a legitimate integration.
Review Dimensions
- Purpose & Capability
- okName/description (Klein Tools company and product background) align with the SKILL.md content, which is purely informational; there are no unrelated requirements.
- Instruction Scope
- okSKILL.md contains only triggers and static content (history, commercial analysis, facts). It does not instruct the agent to read files, environment variables, run commands, or transmit data to external endpoints.
- Install Mechanism
- okNo install spec and no code files — nothing is downloaded or written to disk as part of installation.
- Credentials
- okThe skill declares no required environment variables, credentials, or config paths; there is no disproportionate access requested.
- Persistence & Privilege
- okalways is false and the skill does not request elevated persistence or modify other skills or system settings. Normal autonomous invocation is allowed by platform default.
