Policy Sea
PassAudited by ClawScan on May 3, 2026.
Overview
This is an instruction-only policy lookup skill with no code, credentials, or system access, but users should verify its claimed real-time data and package provenance.
This appears safe from a security perspective because it is instruction-only and requests no permissions. Before relying on it for business decisions, verify official sources and note the missing homepage/source plus the inconsistent slug/version metadata.
Findings (2)
Artifact-based informational review of SKILL.md, metadata, install specs, static scan signals, and capability signals. ClawScan does not execute the skill or run runtime probes.
A user could over-rely on policy, tax, or certification answers that may not actually be live or officially verified.
The metadata presents the skill as real-time and trusted, but the supplied artifacts are instruction-only and do not show live data sources, API access, or verification code.
"description": "基于惠迈智能体架构,提供东南亚主要国家的实时市场政策查询、法规分析及投资环境评估服务。" ... "trustedMode": true
Treat responses as general guidance, ask for citations, and verify important trade or legal decisions against official government sources.
It is harder to verify who maintains the skill, which package identity is authoritative, and whether updates match the advertised version.
The registry provides no source or homepage, and the included files reference different package/version information, such as _meta.json using slug policy-sea and version 1.1.0.
Slug: huimai-southeast-asia-policy; Version: 2.0.0; Source: unknown; Homepage: none
Confirm the intended package slug and publisher before installing; the publisher should add a homepage/source link and align version metadata.
