交互式生成公众号文章

Security checks across static analysis, malware telemetry, and agentic risk

Overview

This is a coherent instruction-only WeChat article writing helper, with minor user-awareness cautions about AI-authorship transparency, optional external image-prompt use, and document export.

This skill is safe to treat as a writing assistant. Before installing or using it, be mindful that it encourages naturalizing AI-generated text, so you should fact-check content and disclose AI assistance when appropriate. If you use the suggested Doubao prompts or export Word documents, review the content, metadata, and any private information before sharing externally.

Static analysis

No static analysis findings were reported for this release.

VirusTotal

VirusTotal findings are pending for this skill version.

View on VirusTotal

Risk analysis

Artifact-based informational review of SKILL.md, metadata, install specs, static scan signals, and capability signals. ClawScan does not execute the skill or run runtime probes.

What this means

Readers may not realize the article was AI-assisted unless the user chooses to disclose it.

Why it was flagged

The skill openly asks the agent to make generated writing appear more human-like. This is purpose-aligned for style polishing, but it can affect reader transparency if the final article is presented as wholly human-authored.

Skill content
“去除AI写作痕迹:润色策略让文章读起来像真人写的”
Recommendation

Use the polishing guidance for readability, but fact-check all details and consider appropriate AI-assistance disclosure for public or professional posts.

What this means

If the article topic or prompt includes private information, copying it to an external image service may disclose that information to the provider.

Why it was flagged

The skill suggests manually copying generated image prompts to an external provider. This is disclosed and user-controlled, but the prompts may contain article themes or business details.

Skill content
“您可以将上述提示词复制到豆包(doubao.com)生成对应图片”
Recommendation

Review prompts before pasting them into Doubao or any other external service, and remove confidential or unpublished details.

What this means

The agent may produce a DOCX artifact or use a user-provided template if requested, so the resulting file should be reviewed before sharing.

Why it was flagged

The skill describes optional user-confirmed document export and template use. This is aligned with the stated writing purpose and does not show unsafe execution, but it can create or use local document files.

Skill content
“用户确认文章和配图方案后,可选择导出WORD文档” and “支持使用自定义WORD文档模板”
Recommendation

Only export documents after confirming the content, use trusted templates, and verify the DOCX formatting and metadata before publication.