Visit Briefing Generator
PassAudited by ClawScan on May 14, 2026.
Overview
This instruction-only skill appears purpose-aligned, but it handles sensitive customer visit material and can optionally create Word files, so users should review what they provide and export.
Before installing, confirm that you are allowed to process the customer notes, chat logs, images, security incidents, pricing, and contact details you provide. Treat generated reports and Word exports as sensitive business documents, and verify any separately installed docx dependency and sales claims before use.
Findings (5)
Artifact-based informational review of SKILL.md, metadata, install specs, static scan signals, and capability signals. ClawScan does not execute the skill or run runtime probes.
On first use, the agent may check a few local files/directories or package metadata to report whether Word export is available.
The skill asks the agent to perform local environment and package checks on first use. This is disclosed and limited to platform/docx detection, not an automatic install or broad system scan.
启动时自动执行以下环境检测...检查 `~/.config/teleai-super-agent/skills/docx/SKILL.md` 是否存在...或 `pip show python-docx` 是否可用
Allow only the disclosed environment checks; do not approve broader shell or filesystem actions unless you explicitly need them.
If you confirm export, a .docx file containing the briefing and follow-up plan will be created in the working directory.
The skill can invoke another skill and write a Word document, but only after the user confirms they want export.
用户确认需要时,调用 `docx` skill 生成Word文件...保存至工作目录根目录
Review the report before exporting and store the generated document in an appropriate location for sensitive customer materials.
The safety and behavior of Word export also depends on the separate docx tool you choose to install.
The optional export feature depends on a separate docx skill/package that is not included in these artifacts. The skill does not auto-install it, so this is a provenance note rather than a concern.
Word document export (optional, requires user to install docx skill separately)
Install the docx dependency only from a trusted source and verify its permissions separately.
Generated briefings may contain confidential customer names, incidents, fees, contacts, and business opportunities.
The skill intentionally preserves sensitive customer and business details in generated summaries and optional documents. This is core to its purpose but requires careful handling.
客户名称、安全事件、费用数据等敏感信息一律如实记录
Only provide data you are authorized to process, review outputs for confidentiality, and avoid sharing generated files outside approved channels.
Generated follow-up scripts could overstate security or compliance guarantees if used verbatim.
One sales-script template uses an absolute security/compliance assurance that may be too broad if copied into customer communications without validation.
而且完全合规,不会有安全问题。
Review generated sales language and align it with approved product, legal, and compliance claims before sending to customers.
