Contabilidade Pública BR

Security checks across malware telemetry and agentic risk

Overview

This is an instruction-only public-sector accounting reference skill with no code, install steps, credentials, or hidden automation.

This skill appears safe to install as a reference aid. Treat it as accounting guidance, not a substitute for professional review, and do not share digital certificate credentials or allow official submissions without explicit human verification.

VirusTotal

58/58 vendors flagged this skill as clean.

View on VirusTotal

Risk analysis

Artifact-based informational review of SKILL.md, metadata, install specs, static scan signals, and capability signals. ClawScan does not execute the skill or run runtime probes.

#
ASI03: Identity and Privilege Abuse
Low
What this means

If used for real submissions, the user should keep control of certificate-based login, signing, homologation, and publication because those actions can have official legal and fiscal consequences.

Why it was flagged

The reference material discusses use of government fiscal systems that require digital certificates and can publish official reports. This is purpose-aligned, and the artifacts do not ask the agent to collect or store credentials.

Skill content
Login: certificado digital e-CPF ou e-CNPJ (tipo A3) ... Assinar ... Homologar ... Publicar
Recommendation

Use the skill for guidance and drafting, but personally verify all figures and legal requirements before signing, homologating, or publishing anything in SICONFI/SINC or TCE systems.