Hydration Habit Tuner

Security checks across malware telemetry and agentic risk

Overview

This is a prompt-only hydration routine planner with no code, network access, or credentials, though it may ask for personal schedule and health-constraint details.

This skill appears safe to install as an instruction-only habit planner. Use normal care when sharing health details: mention relevant clinician limits or fluid restrictions if needed, but do not treat the plan as medical advice.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal

Risk analysis

Artifact-based informational review of SKILL.md, metadata, install specs, static scan signals, and capability signals. ClawScan does not execute the skill or run runtime probes.

#
ASI06: Memory and Context Poisoning
Low
What this means

The user may share personal health and routine details in the chat while building the hydration plan.

Why it was flagged

The skill may ask the user to disclose health-related constraints. This is purpose-aligned for avoiding unsafe hydration guidance, and the artifacts do not show storage, network transfer, or credential use.

Skill content
Any medical fluid restriction, kidney or heart condition, pregnancy-related guidance, or clinician advice.
Recommendation

Share only the health constraints needed for safety, and follow clinician guidance for any medical fluid restrictions.

#
ASI04: Agentic Supply Chain Vulnerabilities
Info
What this means

Version information may be slightly inconsistent, which can make provenance review less tidy.

Why it was flagged

The SKILL.md front matter lists version 1.0.0 while skill.json and registry metadata list version 1.0.1. This is a minor metadata coherence issue, not evidence of malicious behavior.

Skill content
version: "1.0.0"
Recommendation

The publisher should align version fields across SKILL.md, ACCEPTANCE.md, skill.json, and registry metadata.