Bio Reabilita Z

PassAudited by VirusTotal on May 12, 2026.

Overview

Type: OpenClaw Skill Name: bio-reabilita-z Version: 1.0.3 The `skill.md` file contains a prompt injection risk by explicitly instructing the AI agent to "Acelerar reabilitação do quadril e nervo ciático do operador @Zbreda" (Accelerate rehabilitation of the hip and sciatic nerve for operator @Zbreda). This instruction, embedded within a medical context involving "nootropics" and "testosterone optimization" and referencing other skills like `Imortalbrain` and `Testosterone-Optimization`, could lead the agent to access or process sensitive personal health information, or even attempt to make medical recommendations or procure substances without proper authorization or oversight. This represents a significant vulnerability in the agent's operational scope and privacy handling, rather than direct malicious intent like data exfiltration or system compromise.

Findings (0)

Artifact-based informational review of SKILL.md, metadata, install specs, static scan signals, and capability signals. ClawScan does not execute the skill or run runtime probes.

What this means

A user could be encouraged to share private health information into agent context or downstream workflows without clear privacy limits.

Why it was flagged

This directs the workflow toward continuous processing of sensitive biometric and pain data, but the artifact does not define consent, minimization, retention, sharing, or memory boundaries.

Skill content
Monitoramento contínuo de sinais vitais, movimentos e padrões de dor
Recommendation

Use only with explicit informed consent, minimize health data, disable persistent memory unless deliberately needed, and define retention and sharing rules before use.

What this means

Users may over-trust the agent for serious medical decisions involving drugs, hormones, peptides, or rehabilitation plans.

Why it was flagged

The skill frames pharmacological and hormonal interventions as part of the rehabilitation protocol without clinical oversight, contraindication, dosing, or safety-limit instructions.

Skill content
Uso de nootrópicos ... para gerenciar a dor ... Fase Hormonal: Otimização de testosterona para regeneração óssea
Recommendation

Treat the content as informational only; require licensed clinical review for any medication, hormone, peptide, supplement, or physical rehabilitation plan.

What this means

A user could be exposed to payment, financing, or investment prompts while seeking health guidance.

Why it was flagged

The medical protocol includes monetization and fundraising language, which could steer agent behavior toward solicitation rather than neutral user assistance.

Skill content
Assinaturas mensais ... Pacotes de reabilitação personalizados ... Buscamos parceiros para financiar o protocolo
Recommendation

Keep any commercial or fundraising discussion separate from medical guidance and only present it when the user explicitly asks.

What this means

Users cannot easily validate who authored the protocol or what clinical evidence supports it.

Why it was flagged

There is no executable package risk here, but the source and provenance of a high-impact health protocol cannot be verified from the supplied metadata.

Skill content
Source: unknown; Homepage: none
Recommendation

Verify the author, evidence base, and any referenced services or skills before relying on the content.