Skill Spector is built around a simple boundary: public source scans can become public reports, while sensitive uploads and pasted text should stay private.
Information the scanner receives
Skill Spector may receive URLs, repository metadata, uploaded Markdown or zip files, pasted SKILL.md text, scan settings, source paths, generated findings, and basic technical request information needed to operate the service.
Public report publishing
URL-based scans of public sources may be published as public reports when public reporting is selected. Public reports can include source URLs, commit metadata, risk scores, findings, files, and recommendations.
Private scan inputs
Uploaded files and pasted text are treated as private scan inputs. They are intended for one-off review and should not be published as crawlable report pages.
Analytics and advertising
The site may use privacy-conscious analytics and advertising partners after launch. If ads are enabled, ad partners may use cookies or similar technologies according to their own policies.
Data use
Scan data is used to generate security review reports, improve scanner reliability, debug service issues, prevent abuse, and maintain public report pages. Public reports are intended to be indexed by search engines and shared with readers.
Third-party services
Skill Spector may rely on hosting, API, analytics, security, and advertising providers. These providers may process limited technical data needed to deliver the site, protect the service, measure usage, or serve ads.
Your choices
Do not upload or paste secrets, credentials, proprietary code, or confidential files unless you understand the risk. For public source scans, review the public-report setting before submitting. To ask about a report or privacy concern, contact lxcmeiguo@gmail.com.
Policy updates
This policy may be updated as the scanner, report library, analytics, or advertising setup changes. Material changes should be reflected on this page before or when they take effect.
Security scanners should be transparent about data boundaries. Read the Terms and Disclaimer before relying on any report as an installation decision.