The skill is coherently aimed at endpoint fleet management, but it exposes disruptive reboot and profile-change actions without a built-in read-only or approval gate for agent/MCP use.
Install only with least-privileged, preferably read-only endpoint-management credentials until you have external approval/RBAC controls in place. Treat ~/.endpoint-aiops/secrets.enc and ENDPOINT_AIOPS_MASTER_PASSWORD as highly sensitive, especially for igel-ums administrator passwords, and do not expose MCP write tools to an agent unless reboots and profile changes are separately approved and scoped.