Writing Assistant Litiao

PassAudited by ClawScan on May 1, 2026.

Overview

This is an instruction-only writing delegation skill with no code or credential access, but users should notice that it delegates work to MCP tools and has inconsistent embedded metadata.

This skill appears safe to install as an instruction-only writing assistant. Before using it with sensitive drafts or references, confirm which MCP tools it can call and whether those tools are trusted. Also verify the publisher/package identity because the included metadata does not match the registry metadata.

Findings (2)

Artifact-based informational review of SKILL.md, metadata, install specs, static scan signals, and capability signals. ClawScan does not execute the skill or run runtime probes.

What this means

Writing prompts, references, or draft content could be passed to external or specialized tools during use.

Why it was flagged

The skill explicitly routes writing tasks and references to MCP tools. This is aligned with the stated writing-team purpose, but users should be aware that task content or references may be shared with whatever MCP tools are available.

Skill content
You are a Writing Team Lead managing specialized writers via MCP tools... assign it to the appropriate tool.
Recommendation

Only use this skill with MCP tools you trust, and avoid including confidential source material unless the connected tools are approved for that data.

What this means

The skill may have been repackaged or published with inconsistent metadata, making it harder to verify its origin.

Why it was flagged

The embedded metadata differs from the supplied registry metadata, which lists a different owner ID, slug, and version. This does not show malicious behavior, but it creates a provenance/version consistency issue.

Skill content
"ownerId": "kn78k3fbaxtmx9arpckhfj2t598178v4", "slug": "writing-assistant", "version": "0.1.0"
Recommendation

Verify the publisher and intended package identity before relying on it, especially if future versions add code, credentials, or external integrations.