CCW Project Supervisor

Security checks across static analysis, malware telemetry, and agentic risk

Overview

This is an instruction-only project supervision skill that stays aligned with planning and CCW workflow guidance, with no code, install steps, credentials, persistence, or hidden data access shown.

This skill appears safe to install as an instruction-only workflow supervisor. Before acting on its recommendations, review any generated CCW command or prompt, especially /issue/execute, to ensure it matches your intended project scope and current queue.

Static analysis

No static analysis findings were reported for this release.

VirusTotal

VirusTotal findings are pending for this skill version.

View on VirusTotal

Risk analysis

Artifact-based informational review of SKILL.md, metadata, install specs, static scan signals, and capability signals. ClawScan does not execute the skill or run runtime probes.

What this means

The skill may tell the user what CCW command to run next, including an execution command, so users should review the recommended command and prompt before running it.

Why it was flagged

The skill can guide a user toward CCW commands that may lead to implementation work, but the artifact explicitly limits this to a reviewed queue and understood execution path.

Skill content
Only recommend `/issue/execute` after the queue is coherent and the shortest runnable path is understood.
Recommendation

Use the skill as a planning supervisor and confirm scope, queue order, and the selected issue before following any /issue/execute recommendation.