This skill is transparent about being a desktop automation tool, but it gives an agent broad control over local apps without enough safety scoping.
Install only if you intentionally want an agent to control your desktop. Verify the external agent-desktop package before installing it globally, avoid --trust unless you trust its install scripts, grant Accessibility only in a dedicated terminal if possible, keep sensitive apps closed, and require explicit approval before the agent reads clipboard/screenshots, acts on notifications, sends/submits data, changes settings, closes apps, or clicks destructive controls.