Myoperatingplugin
Security checks across static analysis, malware telemetry, and agentic risk
Overview
The skill's code, scripts, and instructions are consistent with a 'self‑improvement' hook that logs learnings and injects lightweight reminders; it does not request unrelated credentials, perform network downloads, or contain obvious exfiltration.
This skill is internally coherent for capturing learnings and adding bootstrap reminders. Before enabling hooks or copying files into your home/workspace: (1) inspect the hook handler and the reminder text (it injects a virtual file into session context), (2) note that error-detector reads CLAUDE_TOOL_OUTPUT (do not enable PostToolUse globally if you don't want automatic error scanning of tool output), (3) enabling hooks requires explicit user action (copy/enable) so it's opt-in, and (4) the scripts will create/modify files under the active workspace — ensure you trust the repository path and set appropriate file permissions. If you want extra assurance, run the extract-skill.sh --dry-run and test the activator/error-detector in a disposable workspace first.
SkillSpector
SkillSpector findings are pending for this release.
Static analysis
No static analysis findings were reported for this release.
VirusTotal
No VirusTotal findings
