Back to skill
Skillv1.0.0

ClawScan security

Abductive Reasoning · ClawHub's context-aware review of the artifact, metadata, and declared behavior.

Scanner verdict

BenignMar 12, 2026, 12:05 PM
Verdict
benign
Confidence
high
Model
gpt-5-mini
Summary
This is an instruction-only skill that provides a structured abductive-reasoning workflow; its requirements and runtime instructions are coherent with its stated purpose and it requests no system access or secrets.
Guidance
This skill is instruction-only and appears to be coherent with its purpose. Before using it: (1) Avoid pasting highly sensitive credentials or private data into prompts — the skill will process whatever you provide. (2) Treat outputs as hypotheses, not proofs: abductive reasoning produces plausible explanations that can be wrong; verify with evidence and tests suggested by the skill. (3) Because there is no install or external access, risk is low, but always review any automated conclusions before acting on them.

Review Dimensions

Purpose & Capability
okName and description match the SKILL.md: the skill is a reasoning framework. It does not declare any binaries, env vars, or config that would be unrelated to its stated purpose.
Instruction Scope
okSKILL.md contains only step-by-step guidance for applying abductive reasoning. It does not instruct the agent to read files, access environment variables, call external endpoints, or collect data beyond the user's provided observations.
Install Mechanism
okNo install specification and no code files are present (instruction-only). Nothing is written to disk or downloaded, minimizing installation risk.
Credentials
okThe skill requires no environment variables, credentials, or config paths. There are no requests for secrets or unrelated service tokens.
Persistence & Privilege
okalways:false (default) and disable-model-invocation:false (normal). The skill does not request permanent presence or elevated privileges and does not attempt to modify other skills or system settings.