This aquarium analysis skill is cloud-backed and documented in part, but it silently creates or reuses an identity, stores service tokens locally, and uses broad file/URL/network behavior that needs review before installation.
Review this before installing. Use it only if you are comfortable sending fish images/videos and report-history requests to the publisher's service, allowing a local workspace database with generated identity and service tokens, and accepting arbitrary URL submission to the backend. Ask the publisher to provide production endpoint configuration, explicit permission declarations, URL allowlisting, token-storage documentation, and a way to inspect/delete stored identity data.