Back to skill
Skillv1.0.0

ClawScan security

Cb User Persona Builder · ClawHub's context-aware review of the artifact, metadata, and declared behavior.

Scanner verdict

BenignApr 25, 2026, 3:47 AM
Verdict
benign
Confidence
high
Model
gpt-5-mini
Summary
This is an instruction-only persona-building skill whose requested resources and runtime instructions align with its stated purpose and do not request credentials, installs, or system access.
Guidance
This skill is coherent and low-risk from a technical standpoint, but you should still: (1) verify outputs with primary research before making decisions, (2) avoid pasting sensitive or personal data into prompts, (3) be aware the package has no visible homepage or provenance—if provenance matters to you, ask the publisher for references or examples, and (4) treat produced personas as hypotheses (the SKILL.md already emphasizes validation to avoid stereotyping).

Review Dimensions

Purpose & Capability
okThe skill claims to build evidence-based foreign-market personas and all declared artifacts (persona frameworks, triangulation, validation loop) match that claim; there are no unrelated requirements such as cloud credentials or platform APIs.
Instruction Scope
okThe SKILL.md describes a bounded research workflow (inputs to collect, steps to follow, output modules) and does not instruct the agent to read system files, environment variables, or transmit data to external endpoints. It stays within the stated persona-building scope.
Install Mechanism
okNo install spec and no code files — the skill is instruction-only, so nothing is downloaded or written to disk. This minimizes persistence and supply-chain risk.
Credentials
okThe skill requests no environment variables, credentials, or config paths; there are no disproportionate secret or system access requests relative to its function.
Persistence & Privilege
okFlags show default autonomy settings (user-invocable, model invocation allowed) and always:false. The skill does not request permanent presence or modification of other skills or system-wide settings.