ZappushZappush
SkillsUse CasesBenchmarkCommunitySign In
      Back to Skills
      h-harry

      Safety Report

      Skill Vetter 1

      @h-harry

      Security-first skill vetting for AI agents. Use before installing any skill from ClawdHub, GitHub, or other sources. Checks for red flags, permission scope,...

      52Downloads
      0Installs
      0Stars
      1Versions
      Security & Compliance4,334Git & Version Control2,122Legal & Compliance2,019

      Security Analysis

      high confidence
      Clean0.04 risk

      An instruction-only vetting checklist that is internally consistent with its stated purpose and requests no credentials or installs; minor metadata provenance inconsistency is worth checking before trusting it blindly.

      Mar 15, 20262 files1 concern
      Purpose & Capabilityok

      The skill's name, description, and SKILL.md all describe a vetting checklist and the instructions align with that purpose. It is instruction-only and does not request binaries, env vars, or installs. Note: the registry metadata Owner ID (kn78...) differs from the _meta.json ownerId (kn71...), which is a provenance inconsistency worth verifying.

      Instruction Scopenote

      The SKILL.md explicitly instructs the agent to 'Read ALL files in the skill' and to run network queries (curl to GitHub APIs) to gather repo info. Those actions are appropriate for a vetting skill, but they require the agent to have file and network access limited to the target repo/workspace; if the agent's file read scope is broader, these instructions could cause wider data exposure. The instructions themselves do not ask the agent to exfiltrate data or access unrelated credentials.

      Install Mechanismok

      No install spec and no code files are present (instruction-only). This minimizes risk from arbitrary downloads or disk writes.

      Credentialsok

      The skill declares no environment variables, credentials, or config paths. The SKILL.md advises rejecting skills that request credentials or access to credential files, which is consistent with a security-focused vetter.

      Persistence & Privilegeok

      always is false and the skill does not request persistent presence or modification of other skills or global agent settings. Autonomous invocation is allowed (platform default) but not excessive for this use case.

      Guidance

      This skill is coherent and appears safe to use as a checklist. Before relying on it: (1) Verify the skill's provenance — the ownerId in the included _meta.json does not match the registry Owner ID provided to you; confirm which is authoritative. (2) Ensure your agent's file read scope is limited to the skill repository/workspace so 'read all files' cannot access unrelated private data (SSH keys, AWS creds, etc.). (3) If you allow the skill to run network queries, prefer read-only API calls and inspect the exact curl endpoints it will call. (4) Use this vetter as an aid, not a substitute for human review on high-risk skills.

      Latest Release

      v1.0.0

      Initial release of Skill Vetter: a security-first vetting guide for AI agent skills. - Outlines a step-by-step protocol to check source, code, permissions, and risk level before installing any skill. - Lists clear red flags to reject (e.g., credential access, suspicious network calls, use of eval/exec). - Provides a detailed vetting report template for consistent reviews. - Includes practical commands for vetting GitHub-hosted skills. - Highlights trust hierarchy and best practices for skill installation security.

      Popular Skills

      Senior Engineering Principles

      @h-mascot · 2 stars

      妙达语音转文字

      @nice1234-h · 1 stars

      妙达文字生成图片

      @nice1234-h · 1 stars

      Beeper Desktop API

      @h-mascot · 0 stars

      Heimdall Security Scanner

      @h-mascot · 0 stars

      Geordi

      @h-mascot · 0 stars

      Published by @h-harry on ClawHub

      Zappush© 2026 Zappush
      HomeGuaranteeSupport

      Something feels unusual? We want to help: [email protected]