Bio Reabilita Z
PassAudited by VirusTotal on May 12, 2026.
Overview
Type: OpenClaw Skill Name: bio-reabilita-z Version: 1.0.3 The `skill.md` file contains a prompt injection risk by explicitly instructing the AI agent to "Acelerar reabilitação do quadril e nervo ciático do operador @Zbreda" (Accelerate rehabilitation of the hip and sciatic nerve for operator @Zbreda). This instruction, embedded within a medical context involving "nootropics" and "testosterone optimization" and referencing other skills like `Imortalbrain` and `Testosterone-Optimization`, could lead the agent to access or process sensitive personal health information, or even attempt to make medical recommendations or procure substances without proper authorization or oversight. This represents a significant vulnerability in the agent's operational scope and privacy handling, rather than direct malicious intent like data exfiltration or system compromise.
Findings (0)
Artifact-based informational review of SKILL.md, metadata, install specs, static scan signals, and capability signals. ClawScan does not execute the skill or run runtime probes.
A user could be encouraged to share private health information into agent context or downstream workflows without clear privacy limits.
This directs the workflow toward continuous processing of sensitive biometric and pain data, but the artifact does not define consent, minimization, retention, sharing, or memory boundaries.
Monitoramento contínuo de sinais vitais, movimentos e padrões de dor
Use only with explicit informed consent, minimize health data, disable persistent memory unless deliberately needed, and define retention and sharing rules before use.
Users may over-trust the agent for serious medical decisions involving drugs, hormones, peptides, or rehabilitation plans.
The skill frames pharmacological and hormonal interventions as part of the rehabilitation protocol without clinical oversight, contraindication, dosing, or safety-limit instructions.
Uso de nootrópicos ... para gerenciar a dor ... Fase Hormonal: Otimização de testosterona para regeneração óssea
Treat the content as informational only; require licensed clinical review for any medication, hormone, peptide, supplement, or physical rehabilitation plan.
A user could be exposed to payment, financing, or investment prompts while seeking health guidance.
The medical protocol includes monetization and fundraising language, which could steer agent behavior toward solicitation rather than neutral user assistance.
Assinaturas mensais ... Pacotes de reabilitação personalizados ... Buscamos parceiros para financiar o protocolo
Keep any commercial or fundraising discussion separate from medical guidance and only present it when the user explicitly asks.
Users cannot easily validate who authored the protocol or what clinical evidence supports it.
There is no executable package risk here, but the source and provenance of a high-impact health protocol cannot be verified from the supplied metadata.
Source: unknown; Homepage: none
Verify the author, evidence base, and any referenced services or skills before relying on the content.
