Digital Life Organizer

Security checks across malware telemetry and agentic risk

Overview

This is a document-only planning skill with clear privacy boundaries; the only caveat is an inconsistent capability signal mentioning sensitive credentials.

This skill appears safe to use as a planning checklist. Only provide high-level descriptions you are comfortable sharing, and do not paste passwords, recovery codes, API keys, cookies, private keys, or other secrets.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal

Risk analysis

Artifact-based informational review of SKILL.md, metadata, install specs, static scan signals, and capability signals. ClawScan does not execute the skill or run runtime probes.

#
ASI03: Identity and Privilege Abuse
Info
What this means

A user might be confused by the credential-related signal, but the reviewed skill content should not ask for or use credentials.

Why it was flagged

This platform signal suggests sensitive credentials may be involved, even though the requirements list no credentials and SKILL.md says not to request passwords, API keys, session cookies, or similar secrets.

Skill content
Capability signals
- requires-sensitive-credentials
Recommendation

Do not paste passwords, API keys, recovery codes, cookies, or private keys. The publisher should remove or correct the credential capability signal if it is unintended.