ClawAudit verdict
sympy
crystallographic-wyckoff-position-analysis-sympy
Symbolic mathematics guidance skill for SymPy covering algebra, calculus, and physics; no network, credential, or execution capabilities, purely a reference and methodology document.
โ Flagged for review โ coarse, uncorroborated signal, not a confirmed exploit. Review the config yourself before installing.
Automated static analysis โ not a human review. ClawAudit flags capabilities, not confirmed intent, and can produce false positives. Disagree with this verdict? Use Dispute below.
Findings (1)
Uses eval() โ can execute arbitrary code
references/code-generation-printing.md ยท code ยท eval(
Permissions & capabilities
No declared permissions โ minimal attack surface.
Is this flag fair?
Thanks โ recorded.