This skill is not proven malicious, but it asks for broad, persistent control while its safety claims understate background processes, local storage, and code-execution capability.
Install only after reviewing the MCP registration and persistence behavior. Treat this as a broad local agent extension, not just a prompt skill: it may write local memory/history files, register tools, inspect or spawn processes, and expose code-execution modules. Avoid using it with sensitive conversations, credentials, private repositories, or regulated health data unless you have explicitly disabled or accepted those behaviors.