The skill is a real OpenClaw upgrade workflow, but it handles local secrets and persistent notifications in ways users should review before installing.
Review this skill before installing. It is not evidence of malware, but it gives an agent authority to upgrade global OpenClaw, inspect other local OpenClaw users/WSL installs, read ~/.openclaw/.env, create versioned plaintext .env backups, schedule a one-time cron notification, and restart the gateway. Consider removing the GitHub token lookup, tightening cross-user discovery, and adding cleanup or safer handling for secret backups.