Back to skill
Skillv1.0.0

ClawScan security

How Elon Musk Thinking About This · ClawHub's context-aware review of the artifact, metadata, and declared behavior.

Scanner verdict

BenignMar 27, 2026, 6:57 AM
Verdict
benign
Confidence
high
Model
gpt-5-mini
Summary
The skill is an instruction-only 'thinking framework' assistant that only contains prose guidance for answering like Elon Musk's public thinking frameworks; it requests no credentials, installs nothing, and its instructions are consistent with its stated purpose.
Guidance
This is an instruction-only skill that teaches the agent to apply public Elon Musk–derived frameworks when asked; it does not install software or request credentials. Things to consider before installing: (1) outputs reflect heuristics distilled from public sources and may oversimplify or be opinionated—verify factual claims independently; (2) the skill explicitly says not to impersonate Elon, but double-check responses for wording that could be mistaken for personality imitation if that matters legally or ethically; (3) autonomous invocation is allowed by default (normal for skills)—if you prefer to control when it runs, adjust agent settings; (4) because it can influence recommendations (e.g., advocating high-risk approaches), keep a human-in-the-loop for consequential decisions. No technical incoherence or covert behavior was found.

Review Dimensions

Purpose & Capability
okThe name/description (apply Elon Musk thinking frameworks) align with the SKILL.md content and the two reference docs; there are no unexpected binaries, environment variables, or external services requested.
Instruction Scope
okSKILL.md limits the agent to applying public-source frameworks (and explicitly avoids impersonation). It does not instruct the agent to read local files, access unrelated environment variables, or transmit data to external endpoints.
Install Mechanism
okNo install spec and no code files — instruction-only — so nothing will be written to disk or downloaded during install.
Credentials
okThe skill requires no credentials, env vars, or config paths, which is proportionate for a purely instructional/formatting skill.
Persistence & Privilege
okalways is false and the skill is user-invocable; it does not request permanent presence or modify other skills. Autonomous invocation is allowed by default but that is normal and not in itself excessive here.