Back to skill
Skillv0.1.0
ClawScan security
Patsnap Lifescience Biomarker Investigation · ClawHub's context-aware review of the artifact, metadata, and declared behavior.
Scanner verdict
BenignApr 29, 2026, 2:06 AM
- Verdict
- benign
- Confidence
- high
- Model
- gpt-5-mini
- Summary
- The skill's requested tools and runtime instructions match its stated purpose (biomarker literature and patent investigation); it is an instruction-only skill that does not request unrelated credentials or system access.
- Guidance
- This skill is internally consistent: it is an instruction-only R&D tool that uses the platform's lifesciences MCP search/fetch tools to retrieve patents, papers, trials, and related data. Before installing, confirm that your agent environment actually exposes the referenced MCP tools and that you have appropriate access permissions. Be aware the skill mandates fetching full records for search results (which can return a lot of text); verify data-handling and copyright policies if you plan to redistribute fetched content. If you expect legal conclusions (patent infringement assessments), consider having a qualified IP attorney review outputs—the skill can assist research but is not a substitute for legal advice.
Review Dimensions
- Purpose & Capability
- okThe name/description ask for patent and literature searches about biomarkers and the SKILL.md exclusively references lifescience MCP search/fetch/vector tools (patents, papers, trials, drugs, companies). The declared capabilities align with the stated purpose; nothing requested is unrelated (no cloud credentials, no system binaries).
- Instruction Scope
- okRuntime instructions constrain the agent to search→fetch patterns, specific MCP tools, and a multi-path search strategy. The SKILL.md does not instruct reading local files, environment secrets, or posting results to external endpoints beyond the MCP services. One notable policy: it mandates fetching full details for search result IDs (when applicable), which can lead to large retrievals but stays within the declared data domain.
- Install Mechanism
- okNo install spec or code files are present (instruction-only). Nothing is downloaded or written to disk by the skill itself, minimizing install-time risk.
- Credentials
- okThe skill requires no environment variables, credentials, or config paths. All declared tool usage refers to platform-provided MCP lifesciences tools; there are no extraneous secret requests.
- Persistence & Privilege
- okalways is false and disable-model-invocation is false (normal behavior). The skill does not request permanent presence or elevated system privileges and does not modify other skills' configurations.
