This skill mostly does what it says, but it needs Review because it handles authorization codes, sends task content externally, stores local records by default, and includes under-scoped chat-secret and update-check behavior.
Install only if you are comfortable with task content, metadata, and an authorization code being sent to the configured endpoint. Avoid pasting auth codes into chat; configure them through a secure OpenClaw config path instead. Review or disable local push records/logs if task results may contain sensitive data, and be aware that the skill includes a default-enabled ClawHub update check.