Back to skill

Security audit

Pomodoro Focus Timer

Security checks across malware telemetry and agentic risk

Overview

The skill's code and runtime instructions match its Pomodoro timer purpose, request no credentials or installs, and contain no network or file-exfiltration behavior.

This skill appears coherent and low-risk: it only parses text and returns a Pomodoro plan with no network calls, installs, or secret access. If you want extra caution, review the small handler.py (already included) and keep disable-model-invocation enabled if you prefer to prevent autonomous runs; otherwise it is safe to install for typical use.

VirusTotal

VirusTotal findings are pending for this skill version.

View on VirusTotal

Static analysis

No suspicious patterns detected.