The main cloud-removal script is mostly local, but the package also ships under-disclosed credential, geocoding, download, and cache helpers outside the advertised purpose.
Review before installing. The advertised cloud-removal entrypoint appears local, but the package contains extra helper modules with credential access, hardcoded Earthdata fallback credentials, remote geocoding, generic download code, and persistent home-directory caching that are not disclosed in the skill instructions. Install only in an environment where those bundled capabilities are acceptable, or remove/disable the unrelated helper modules and rotate the exposed Earthdata credentials before publishing or use.