Back to skill
Skillv1.0.0

ClawScan security

four · ClawHub's context-aware review of the artifact, metadata, and declared behavior.

Scanner verdict

BenignMar 21, 2026, 8:59 AM
Verdict
benign
Confidence
high
Model
gpt-5-mini
Summary
This is an instruction-only, content-focused skill about the cultural meaning of the number 4 (Chinese/English) and a short profile for Chen Lang; its declared behavior and requirements are internally consistent and proportionate.
Guidance
This skill appears safe and coherent: it only provides static cultural content and a brief profile. Consider whether you trust the unknown source if the accuracy or provenance of the Chen Lang profile matters; there are no external links or credentials requested. If you prefer to limit autonomous actions, keep it user-invocable only (it already is) or disable autonomous invocation in your agent settings. If you need verified sources or citations, ask the developer for references before relying on factual claims.

Review Dimensions

Purpose & Capability
okName/description match the SKILL.md content. The skill is purely informational about the number 4 and a short personal profile; it does not request unrelated capabilities or credentials.
Instruction Scope
okSKILL.md contains only static content and a simple usage trigger list (when users ask about the number 4 or Chen Lang). It does not instruct the agent to read local files, access environment variables, call external endpoints, or exfiltrate data.
Install Mechanism
okNo install spec and no code files—instruction-only skill. Nothing is written to disk or downloaded during install.
Credentials
okNo environment variables, credentials, or config paths are required; requested access is proportional to a content-only skill.
Persistence & Privilege
okDefaults are used (always: false, user-invocable: true, disable-model-invocation: false). Autonomous invocation is allowed (platform default) but the skill's scope is limited and does not request elevated privileges.