Back to skill
v1.0.0

小沐宝咖啡

BenignClawScan verdict for this skill. Analyzed May 1, 2026, 10:18 AM.

Analysis

This instruction-only coffee-stall helper looks purpose-aligned, but guardians should review the child-voice persona and schedule/location content before using it publicly.

GuidanceThis skill is safe to treat as a static information/operations helper rather than executable software. Before installing or publishing it, make sure a guardian is comfortable with the child persona, schedule/location details, payment wording, and social-media copy, and review generated customer-facing text before use.

Findings (2)

Artifact-based informational review of SKILL.md, metadata, install specs, static scan signals, and capability signals. ClawScan does not execute the skill or run runtime probes.

Abnormal behavior control

Checks for instructions or behavior that redirect the agent, misuse tools, execute unexpected code, cascade across systems, exploit user trust, or continue outside the intended task.

Human-Agent Trust Exploitation
SeverityLowConfidenceHighStatusNote
README.md
AI 能以**7岁小女孩的口吻**自动回答

The skill intentionally makes the agent answer in a 7-year-old first-person brand persona. This is disclosed and purpose-aligned, but users should understand the responses are AI-generated and not direct commitments from the real child.

User impactPeople interacting with the assistant may perceive the response as coming from the child unless the AI-generated nature is made clear.
RecommendationKeep an explicit AI/assistant disclosure for public use and review outputs before sending them as customer-facing messages.
Sensitive data protection

Checks for exposed credentials, poisoned memory or context, unclear communication boundaries, or sensitive data that could leave the user's control.

Memory and Context Poisoning
SeverityMediumConfidenceHighStatusNote
references/schedule.md
| 4月19日(周六) | 六 | 15:00 - 18:00 | 小区北门广场 | ✅ 已确认 |

The packaged reference context includes time and location details for a stall described as run by a 7-year-old. Returning this schedule is part of the skill's purpose, but minor-related location information should be shared deliberately.

User impactAnyone with access to the skill may learn when and where the child-run stall is expected to operate or has operated.
RecommendationHave a parent or guardian approve schedule/location details, prefer coarse locations when possible, and remove outdated or overly specific entries before publishing.