Is edwardrodriguez703-design/book-facial safe?
Yes. edwardrodriguez703-design/book-facial is safe to install. Oathe's behavioral security audit gave the book-facial skill by edwardrodriguez703-design a trust score of 92/100 with 2 findings, none critical or high.
https://github.com/openclaw/skills/tree/main/skills/edwardrodriguez703-design/book-facial
Is edwardrodriguez703-design/book-facial safe to install?
This skill provides documentation for booking facial services through Lokuli's MCP server endpoint. The skill contains only documentation files with no executable code or malicious content. While some sensitive canary files were accessed during the audit period, this appears to be related to the monitoring system rather than the skill itself, and no exfiltration occurred.
What security issues were found in edwardrodriguez703-design/book-facial?
Category Scores
Findings (2)
LOW Sensitive file access during monitoring -15 ▶
Multiple canary files containing fake credentials were accessed during the audit period, including .env, SSH keys, AWS credentials, and other sensitive files. However, no modifications or exfiltration was detected.
INFO Minor typo in skill title -5 ▶
The skill title contains a typo ('uook facial' instead of 'book facial') which could be an error or obfuscation attempt, but appears benign.
Should I install edwardrodriguez703-design/book-facial?
Oathe's verdict for edwardrodriguez703-design/book-facial is SAFE with a trust score of 92/100. Recommendation: Install.