Back to skill
Skillv1.0.0

ClawScan security

Omega · ClawHub's context-aware review of the artifact, metadata, and declared behavior.

Scanner verdict

BenignApr 16, 2026, 5:38 PM
Verdict
benign
Confidence
high
Model
gpt-5-mini
Summary
This is an instruction-only, informational skill about Omega watches that requests no credentials, no installs, and its runtime instructions are limited to delivering brand and product information — everything is consistent with its stated purpose.
Guidance
This skill appears to be a straightforward, read-only reference about Omega watches and does not request any permissions or installs — it's low risk. Note that the skill's source and homepage are unspecified; if provenance or content accuracy matters to you, prefer skills with a known author or official source. If future versions request credentials, installs, or broader system access, reassess before installing.

Review Dimensions

Purpose & Capability
okName and description promise watch/brand information; the skill requires no binaries, env vars, or installs — proportional and coherent.
Instruction Scope
okSKILL.md contains only descriptive content and read_when triggers for when to provide Omega-related information; it does not instruct the agent to read files, access environment variables, call external endpoints, or perform unrelated actions.
Install Mechanism
okNo install spec and no code files — lowest-risk instruction-only skill with nothing written to disk.
Credentials
okNo required environment variables, credentials, or config paths are declared or referenced in the instructions.
Persistence & Privilege
okalways is false and the skill does not request elevated or persistent privileges; autonomous invocation is platform default and not a concern here given the skill's benign scope.