Back to skill
Skillv1.0.1

ClawScan security

新闻事实核查 · ClawHub's context-aware review of the artifact, metadata, and declared behavior.

Scanner verdict

BenignMar 11, 2026, 8:36 AM
Verdict
benign
Confidence
high
Model
gpt-5-mini
Summary
This instruction-only skill is internally consistent with a news fact‑checking assistant: it asks for no secrets, installs nothing, and its runtime instructions stay on topic.
Guidance
This skill appears coherent and low‑risk: it is a set of procedures and resource links for fact checking and asks for no secrets or installs. Before installing, consider: (1) the skill has no published homepage/source — if provenance matters, prefer skills with a clear publisher or reviews; (2) test it with non‑sensitive example news to confirm the outputs meet your standards; (3) the agent/platform may still need internet access to follow the referenced sites — avoid submitting private or sensitive content for online verification; (4) the AIGC metadata in the SKILL.md looks like provenance labels only, but if you need guarantees about origin, ask the publisher for more information.

Review Dimensions

Purpose & Capability
okName/description (news fact checking) match the SKILL.md and references: all guidance and tool suggestions are appropriate for verifying news items. No unrelated credentials, binaries, or config paths are requested.
Instruction Scope
noteSKILL.md contains only procedures, checklists, and links to public fact‑checking sites and image/video verification tools — all on‑topic. There is a small metadata block (AIGC/ProduceID/ReservedCode fields) in the file header; it appears to be provenance/labeling metadata and does not instruct any off‑scope actions, but its presence is informational rather than functional.
Install Mechanism
okNo install spec and no code files — nothing will be written to disk or fetched at install time. Instruction-only skills are lowest install risk.
Credentials
okThe skill requires no environment variables, credentials, or config paths. All referenced external resources are public fact‑checking sites and verification tools appropriate for the stated purpose.
Persistence & Privilege
okalways is false and there is no request for persistent system changes. disable-model-invocation is false (agent may invoke it autonomously), which is the platform default and not by itself a concern given the skill's limited scope.