WOSO_lib - 世界女足知识库
ReviewAudited by ClawScan on May 15, 2026.
Overview
Prompt-injection indicators were detected in the submitted artifacts (base64-block); human review is required before treating this skill as clean.
This skill appears safe to install as an instruction-only knowledge base. Be aware that some reference outlines contain leftover author-local file paths; if the agent asks to read files outside the bundled notes, only approve that if you understand and intend the access. ClawScan detected prompt-injection indicators (base64-block), so this skill requires review even though the model response was benign.
Findings (1)
Artifact-based informational review of SKILL.md, metadata, install specs, static scan signals, and capability signals. ClawScan does not execute the skill or run runtime probes.
The agent might waste time or unnecessarily attempt to read a local file path that is not part of the installed skill.
This reference outline tells an agent to use a local file-reading tool on an absolute PDF path outside the packaged skill, even though the main SKILL.md says the shareable version has embedded content and does not need original book files.
用Read工具直接读取PDF,从第10页左右开始(跳过封面和版权页)。
Use the bundled notes as the knowledge source and avoid granting file access to external or absolute paths unless you explicitly want the agent to inspect those files.
