Back to skill
Skillv1.0.0

ClawScan security

Techcrunch · ClawHub's context-aware review of the artifact, metadata, and declared behavior.

Scanner verdict

BenignApr 22, 2026, 4:07 PM
Verdict
benign
Confidence
high
Model
gpt-5-mini
Summary
This is an instruction-only, informational skill about TechCrunch that makes no unexpected requests and appears consistent with its stated purpose.
Guidance
This skill is a passive, read-only info card about TechCrunch and does not request credentials, binaries, or perform installs — low risk. Before installing, confirm you trust the skill publisher (owner ID is present but the source/homepage is unknown). If you expect skills to fetch live articles or call external APIs, note this one contains only static content and will not fetch or update data automatically.

Review Dimensions

Purpose & Capability
okThe name and description (TechCrunch editorial/background) match the only artifact present (a content SKILL.md). The skill requests no binaries, env vars, or config paths that would be inconsistent with an informational reference.
Instruction Scope
okSKILL.md contains static editorial content and 'read_when' guidance; it does not instruct the agent to read files, access environment variables, call external endpoints, or transmit data outside the agent.
Install Mechanism
okNo install spec and no code files are present (instruction-only). Nothing will be written to disk or fetched during install.
Credentials
okThe skill declares no required environment variables, credentials, or config paths — proportional and minimal for a read-only informational skill.
Persistence & Privilege
okalways is false and the skill is user-invocable (defaults). It does not request elevated or persistent privileges and does not modify other skills or system settings.