Back to skill
Skillv1.0.52

ClawScan security

Ai Freelancing Guide · ClawHub's context-aware review of the artifact, metadata, and declared behavior.

Scanner verdict

BenignMar 16, 2026, 3:49 AM
Verdict
benign
Confidence
high
Model
gpt-5-mini
Summary
This is an instruction-only freelancing guide whose requested resources and runtime instructions match its stated purpose and do not ask for credentials or install anything.
Guidance
This skill is coherent and low-risk: it only provides written guidance and templates and asks for no credentials or installs. Before using, validate any recommended pricing/strategies against your market, avoid pasting sensitive client data into prompts, and review generated proposals for accuracy and legal/compliance concerns. If you ever see instructions asking the agent to access files, environment variables, or external URLs, treat that as a red flag and stop.

Review Dimensions

Purpose & Capability
okThe name/description (AI freelancing guide) matches the SKILL.md content (niche analysis, pricing, proposals, workflows). There are no unexpected required binaries, env vars, or config paths.
Instruction Scope
okSKILL.md contains only guidance, examples, pricing tables and templates. It does not instruct the agent to read local files, access environment variables, call external endpoints, or transmit data outside the agent.
Install Mechanism
okNo install spec and no code files are present, so nothing is written to disk and no third-party packages are pulled in.
Credentials
okThe skill declares no credentials, no env vars, and the instructions do not reference any secrets — requested access is proportionate (none).
Persistence & Privilege
okalways is false and the skill does not request persistent or system-wide changes. Default autonomous invocation is allowed by platform policy but the skill itself makes no privileged requests.