Scan Report
0 /100
lsi-steam-lesson-generator
Generate AI-integrated lesson plans with AI tool integration for Hong Kong schools. EDB-aligned for HK$500K AI funding grant.
This is a pure documentation-only AI skill with no executable code, scripts, or binary dependencies. It generates lesson plan templates using AI tools and contains no malicious functionality whatsoever.
Safe to install
This skill is safe to use. No action required.
| Resource | Declared | Inferred | Status | Evidence |
|---|---|---|---|---|
| Filesystem | NONE | NONE | — | No file operations found |
| Network | NONE | NONE | — | No network requests found |
| Shell | NONE | NONE | — | No shell execution found |
| Environment | NONE | NONE | — | No environment access found |
| Skill Invoke | NONE | NONE | — | No skill invocation found |
| Clipboard | NONE | NONE | — | No clipboard access found |
| Browser | NONE | NONE | — | No browser automation found |
| Database | NONE | NONE | — | No database access found |
7 findings
Medium External URL 外部 URL
https://www.heygen.com examples/P4_Science_Plant_Life_Cycle.md:11 Medium External URL 外部 URL
https://www.canva.com examples/P4_Science_Plant_Life_Cycle.md:20 Medium External URL 外部 URL
https://www.canva.com/designschool/ examples/P4_Science_Plant_Life_Cycle.md:28 Medium External URL 外部 URL
https://www.heygen.com/help examples/P4_Science_Plant_Life_Cycle.md:29 Medium External URL 外部 URL
https://chat.openapi.com examples/S2_English_Descriptive_Writing.md:11 Medium External URL 外部 URL
https://chat.openai.com examples/S2_English_Descriptive_Writing.md:14 Info Email 邮箱地址
[email protected] README.md:149 File Tree
7 files · 51.4 KB · 1558 lines Markdown 6f · 1533L
JSON 1f · 25L
├─
▾
examples
│ ├─
P4_Science_Plant_Life_Cycle.md
Markdown
│ ├─
S2_English_Descriptive_Writing.md
Markdown
│ └─
S2_VisualArts_Digital_Portrait.md
Markdown
├─
CHANGELOG.md
Markdown
├─
README.md
Markdown
├─
skill.json
JSON
└─
SKILL.md
Markdown
Security Positives
✓ Zero executable code — skill consists entirely of Markdown documentation and JSON metadata
✓ No shell scripts, Python, Node.js, or any interpreted/compiled code present
✓ No dependencies or package files (requirements.txt, package.json, Cargo.toml) that could introduce supply chain risks
✓ No obfuscated code, base64 payloads, or anti-analysis techniques
✓ No credential harvesting or environment variable access
✓ No network requests or data exfiltration mechanisms
✓ No sensitive file path access (~/.ssh, ~/.aws, .env, etc.)
✓ No persistence mechanisms (cron jobs, startup hooks, backdoors)
✓ No prompt injection vulnerabilities — content is static lesson plan templates
✓ External URLs in examples (canva.com, heygen.com) are legitimate AI tool providers referenced for educational purposes, with no code executing against them