Back to skill
Skillv1.0.0

ClawScan security

Nyx · ClawHub's context-aware review of the artifact, metadata, and declared behavior.

Scanner verdict

BenignApr 16, 2026, 5:39 PM
Verdict
benign
Confidence
high
Model
gpt-5-mini
Summary
The skill is an instruction-only information helper about the Nyx brand; it requests no installs, credentials, or unusual system access and its instructions are consistent with its stated purpose.
Guidance
This skill appears coherent and low-risk: it only defines what brand information to provide and asks for no credentials or installs. Before relying on answers for decisions, verify facts (especially recent news or strategic details) against official sources or reputable media because the skill itself has no built-in data-fetching or verification steps and may reflect the model's knowledge cutoff or outdated information.

Review Dimensions

Purpose & Capability
okThe name/description promise (brand background, products, global footprint, news, market research support) matches the SKILL.md content. There are no extra declared requirements (no env vars, binaries, or config paths) that would be out of scope.
Instruction Scope
okSKILL.md contains only a short specification of when and what to provide (founding story, products, global layout, recent news). It does not instruct the agent to read local files, access unspecified environment variables, or send data to external endpoints.
Install Mechanism
okThere is no install specification and no code files. As an instruction-only skill, it does not add files to disk or fetch external artifacts.
Credentials
okThe skill declares no required environment variables, credentials, or config paths. The scope of requested access is minimal and appropriate for an informational skill.
Persistence & Privilege
okFlags are default (always: false, model invocation allowed). The skill does not request permanent presence or elevated privileges and does not modify other skills or system-wide settings.