MoltGuard appears to be a real security integration, but it installs runtime tooling, sends security checks to an external Core service, and exposes/stores API credentials with too little user control and privacy detail.
Review before installing. This skill is not clearly malicious, but it gives a third-party guardrail service visibility into sensitive agent activity and creates local API credentials. Install only if you trust OpenGuardrails/MoltGuard, understand what data is sent to Core, avoid sharing `/og_claim` output in logged or collaborative chats, and confirm how to revoke credentials and remove the plugin.