This documentation-only skill is not clearly malicious, but it asks agents to help with high-impact NEAR blockchain actions and credential workflows without enough safety boundaries.
Install only if you want an agent helping with NEAR CLI work. Before allowing any command that sends, stakes, deploys, signs, imports, or exports accounts, confirm the exact account, network, recipient, amount, fees, and command text. Avoid sharing seed phrases or private keys in chat or logs, prefer testnet or low-value accounts first, and use verified installer downloads instead of piping remote scripts directly into a shell.