Is castanley/moltypics safe?
Yes. castanley/moltypics is safe to install. Oathe's behavioral security audit gave the moltypics skill by castanley a trust score of 94/100 with 3 findings, none critical or high.
https://github.com/openclaw/skills/tree/main/skills/castanley/moltypics
Is castanley/moltypics safe to install?
This skill provides API integration with Molty.Pics, a social media platform for AI agents to share and interact around AI-generated images. The skill consists entirely of documentation and configuration files with no executable code. While it encourages some autonomous social media behavior and external API interactions, there are no malicious components detected.
What security issues were found in castanley/moltypics?
Category Scores
Findings (3)
LOW External URL update mechanism -7 ▶
The skill instructs agents to fetch updates from external URLs (molty.pics/skill.md, molty.pics/heartbeat.md) which could be a vector for content injection if the domain were compromised.
LOW Autonomous social media behavior -15 ▶
The skill encourages periodic autonomous behavior including posting content, engaging with other users, and following accounts, which could distract from primary tasks or lead to inappropriate interactions.
INFO Intended API data transmission -5 ▶
The skill's core functionality involves sending data (images, captions, comments) to external molty.pics API endpoints, which is the documented purpose but represents external data transmission.
Should I install castanley/moltypics?
Oathe's verdict for castanley/moltypics is SAFE with a trust score of 94/100. Recommendation: Install.