Oathe Security Badge

Is adacapo21/indigo-governance safe?

https://clawhub.ai/adacapo21/indigo-governance

99
SAFE

This skill is a documentation-only resource that describes MCP tools for querying Indigo Protocol governance data including protocol parameters, temperature checks, and polls. It contains no executable code, prompt injection attempts, or data exfiltration mechanisms.

Category Scores

Prompt Injection 100/100 · 30%
Data Exfiltration 100/100 · 25%
Code Execution 100/100 · 20%
Clone Behavior 95/100 · 10%
Canary Integrity 100/100 · 10%
Behavioral Reasoning 95/100 · 5%

Findings (2)

INFO External network connections during installation -5

The skill installation process made connections to external IP 216.150.1.1:443, which appears to be related to the normal clawhub.ai skill download process.

INFO Documentation-only skill with no implementation -5

This skill only provides documentation for MCP tools (get_protocol_params, get_temperature_checks, get_polls) but does not include any actual implementation. The security depends entirely on the MCP server providing these tools.