Is clementsutjiatma/niche safe?

https://github.com/openclaw/skills/tree/main/skills/clementsutjiatma/niche

100
SAFE

This is a well-documented, legitimate trading card marketplace skill that acts as a CLI wrapper for a hosted service. No malicious code, prompt injections, or data exfiltration attempts detected. All functionality is clearly described and operates through safe API calls and browser interactions.

Category Scores

Prompt Injection 100/100 · 30%
Data Exfiltration 100/100 · 25%
Code Execution 100/100 · 20%
Clone Behavior 100/100 · 10%
Canary Integrity 100/100 · 10%
Behavioral Reasoning 95/100 · 5%

Findings (1)

INFO Service involves cryptocurrency transactions and physical meetups -5

The skill facilitates a trading card marketplace that uses real USDC cryptocurrency (on testnet) and encourages in-person meetings between buyers and sellers. While not a security vulnerability in the skill itself, users should be aware of the inherent risks of cryptocurrency transactions and meeting strangers.