Is kosasih/autonomus-ai safe?

https://github.com/openclaw/skills/tree/main/skills/kosasih/autonomus-ai

80
SAFE

This skill presents completely fabricated quantum computing and blockchain capabilities with non-functional code examples and fake installation instructions. While not actively malicious, it is highly misleading and could waste user time.

Category Scores

Prompt Injection 70/100 · 30%
Data Exfiltration 90/100 · 25%
Code Execution 75/100 · 20%
Clone Behavior 100/100 · 10%
Canary Integrity 100/100 · 10%
Behavioral Reasoning 40/100 · 5%

Findings (4)

HIGH Fabricated Quantum Computing Claims -40

The skill claims to provide 'quantum-enhanced model forging' and 'virtualized quantum processor emulator' capabilities that do not exist. These are completely fabricated technical claims.

MEDIUM Non-Existent Dependencies -25

Code examples reference fictional JavaScript and Python libraries that do not exist, potentially causing errors if users attempt to run the provided code.

MEDIUM Fake Installation Instructions -30

Installation instructions reference a non-existent GitHub repository, misleading users about the skill's functionality and installation process.

LOW Sensitive File Path Access -10

Monitoring detected access to sensitive file paths during the audit, though these appear to be from the monitoring system rather than the skill itself.