UX QA Gate

Security checks across static analysis, malware telemetry, and agentic risk

Overview

This is an instruction-only UX review checklist with no code or credentials; the main effect is that it may automatically delay delivery while the agent checks and fixes UI issues.

This skill appears safe and purpose-aligned for automatic UI/UX self-review. Be aware that it may prompt the agent to spend extra time checking the interface and fixing blocker or major issues before presenting the final result.

Static analysis

No static analysis findings were reported for this release.

VirusTotal

VirusTotal findings are pending for this skill version.

View on VirusTotal

Risk analysis

Artifact-based informational review of SKILL.md, metadata, install specs, static scan signals, and capability signals. ClawScan does not execute the skill or run runtime probes.

#
ASI01: Agent Goal Hijack
Low
What this means

The agent may take extra time to review the UI and may delay saying the work is done until the checklist passes.

Why it was flagged

This changes the agent's stopping condition by requiring a self-review gate before delivery. It is clearly disclosed and consistent with the UX QA purpose.

Skill content
Run this gate after completing any user-facing work. Do not deliver work to the user until this gate passes.
Recommendation

Install if you want automatic UX QA before delivery; if you prefer faster handoff, tell the agent when to skip or shorten the gate.

#
ASI02: Tool Misuse and Exploitation
Low
What this means

The agent may make additional UI or code changes to resolve major issues it finds during its self-review.

Why it was flagged

The skill authorizes the agent to fix blocker or major UX issues before delivery. That can involve modifying the just-completed work, but it is scoped to the QA purpose and not paired with broad commands or hidden tooling.

Skill content
Any 🔴 or 🟠 issues → Fix them, then re-run the gate
Recommendation

Use this skill when you are comfortable with the agent correcting QA issues automatically; ask for a summary or confirmation first if you want to review fixes before they are applied.