Is metaspartan/mactop safe?
Yes. metaspartan/mactop is safe to install. Oathe's behavioral security audit gave the mactop skill by metaspartan a trust score of 96/100 with 5 findings, none critical or high.
https://github.com/metaspartan/mactop
Is metaspartan/mactop safe to install?
mactop is a legitimate, well-known macOS Apple Silicon system monitor with no LLM skill functionality. Its SKILL.md is empty (zero prompt injection surface), no code executes during cloning, canary files remained intact throughout the audit, and the only network activity was the expected GitHub connection. The credential file accesses observed in monitoring logs predate the git clone and follow a read-only pattern consistent with the audit sandbox's own canary setup rather than any mactop-originated behavior.
What security issues were found in metaspartan/mactop?
Category Scores
Findings (5)
INFO SKILL.md contains no content 0 ▶
The SKILL.md file is completely empty. No prompt injection, persona hijacking, instruction override, or hidden content attack surface exists.
INFO Canary credential file accesses preceded git clone — monitoring infrastructure origin -5 ▶
Read-only accesses to all six honeypot credential files occurred at timestamp 1788523494, before the git clone began at 1788523500. The CLOSE_NOWRITE pattern indicates no modification. Canary integrity report independently verifies no exfiltration. No outbound connections carrying credential data were observed in the network capture.
INFO No executable code triggers on clone — pure Go/ObjC/C source -5 ▶
Git clone of a Go repository does not execute any code. No npm scripts, no git hooks, no submodules, and no symlinks outside the repo were found. The Makefile and goreleaser config require explicit user invocation.
INFO Single expected external connection to GitHub -7 ▶
Network capture shows only one external destination: 140.82.121.4:443 (GitHub). DNS queries resolved github.com. No unexpected C2 connections, no DNS tunneling, and no new listening services after installation.
LOW Repository is a macOS-only monitor with no LLM skill functionality -12 ▶
mactop is a legitimate open-source project (github.com/metaspartan/mactop) providing Apple Silicon system monitoring. Its empty SKILL.md means it delivers zero agent instructions. All source code targets macOS-only APIs (IOReport, SMC, Apple Silicon). Installing this as an LLM skill would result in an inert, non-functional skill entry with no security risk but also no utility in standard agent environments.
Should I install metaspartan/mactop?
Oathe's verdict for metaspartan/mactop is SAFE with a trust score of 96/100. Recommendation: Install with caution.