Back to skill
Skillv1.0.0

ClawScan security

心理学实验规划(研究设计、样本量预估) · ClawHub's context-aware review of the artifact, metadata, and declared behavior.

Scanner verdict

BenignApr 28, 2026, 2:33 AM
Verdict
benign
Confidence
high
Model
gpt-5-mini
Summary
This is an instruction-only skill whose requested resources and runtime instructions are coherent with its stated purpose of planning psychology experiments and estimating sample sizes.
Guidance
This skill appears internally consistent and low-risk because it is instruction-only and asks for no credentials or system access. Before installing, consider: (1) treat the output as planning guidance rather than formal statistical validation—consult a statistician for critical analyses; (2) verify copyright/authorization for any measurement scales before using them in data collection; (3) follow your institution's IRB/ethics and data-protection rules (consent, anonymization, storage) when you act on the plan; and (4) the SKILL.md links to G*Power (a legitimate tool) but download only from the official site and verify any external resources yourself. If you need higher assurance, ask the author for provenance of the reference material or for an external review by a methodological expert.

Review Dimensions

Purpose & Capability
okName/description (psychology experiment planning, sample-size estimation, measurement planning) match the SKILL.md and the included reference documents. There are no unrelated required binaries, env vars, or config paths; all declared requirements are proportional to the stated functionality.
Instruction Scope
okSKILL.md contains only guidance for asking the user structured questions and producing a planning report (variables, measurement tools, sample-size guidance, ethical checklist). It does not instruct reading local files, accessing system state, or transmitting data to external endpoints. The guidance to use G*Power is limited to user instructions (download link and usage steps), not automated downloads or execution.
Install Mechanism
okThis is an instruction-only skill with no install spec and no code files that execute. No downloads, archives, or third-party package installs are declared.
Credentials
okThe skill requests no environment variables, credentials, or config paths. The sample-size and measurement guidance sensibly do not require any secrets or external service access.
Persistence & Privilege
okalways is false and there is no indication the skill requests persistent system-wide changes or modifies other skills. Autonomous invocation (model can call the skill) is the platform default and is not in itself a concern here.