← Products

Security - **kws:** security, vetting, audit, skills, openclaw, permissions, red flags, typosquatting, supply chain - **license:** MIT **Description EN:** Curated by Skill Harbor — a defensive security skill for vetting any OpenClaw skill before installation: a structured four-step protocol — metadata check (name, semver, author), permission-scope analysis (fileRead/fileWrite/network/shell with risk levels, flagging the network+shell combination), content analysis for critical red flags (credential paths, curl/wget, base64 obfuscation, prompt injection) and warnings, plus typosquat detection — ending in a SKILL VETTING REPORT with a SAFE / WARNING / DANGER / BLOCK verdict and a trust hierarchy for sources. By @useai-pro, listed here with credit to its creator. Honest caveats: a manual-first checklist, not an automated scanner — the agent still reads and judges; its frontmatter carries a self-reported "trust-score: 97" and an "audit" block, which are the author's own claims, not an independent verification. Discovered via skills.sh. Skill Harbor never reviews the code, review it yourself before use. **Description FR:** Sélectionné par Skill Harbor — un skill de sécurité défensive pour vérifier tout skill OpenClaw avant installation : un protocole structuré en quatre étapes — contrôle des métadonnées (nom, semver, auteur), analyse du périmètre des permissions (fileRead/fileWrite/network/shell avec niveaux de risque, signalement de la combinaison network+shell), analyse du contenu pour signaux critiques (chemins d'identifiants, curl/wget, obfuscation base64, injection de prompt) et avertissements, plus détection de typosquatting — aboutissant à un SKILL VETTING REPORT avec verdict SAFE / WARNING / DANGER / BLOCK et une hiérarchie de confiance des sources. Crédit : @useai-pro. Bémols honnêtes : une checklist manuelle, pas un scanner automatisé — l'agent lit et juge toujours ; son frontmatter porte un « trust-score: 97 » auto-déclaré et un bloc « audit », qui sont les affirmations de l'auteur, pas une vérification indépendante. Découvert via skills.sh. Skill Harbor ne vérifie jamais le code, examinez-le vous-même avant usage. **Install prompt EN:** ``` Prerequisites: none — a pure checklist skill; works with any skill file you want vetted before install Install "Pre-install security vetting for skills" for me. Give my agent the manual-first skill-vetting protocol — metadata check, permission-scope analysis, red-flag content scan, typosquat detection — producing a SAFE/WARNING/DANGER/BLOCK vetting report for any skill before I install it Repository: https://github.com/useai-pro/openclaw-skills-security/blob/main/skills/skill-vetter/SKILL.md 1. Fetch the SKILL.md file for the useai-pro-openclaw-skills-security-skill-vetter skill from the repository into a temporary folder and summarize what it does in one or two sentences. 2. Safety check: review the SKILL.md for anything suspicious (unexpected network calls, shell commands, credential harvesting). This repo should contain zero secrets in code, credentials only via the secure vault, allowed hosts declared in the SKILL.md. Verify that holds here; STOP on any red flag and tell me. 3. Install it as a skill: copy SKILL.md into the agent's skills directory, in a folder named "useai-pro-openclaw-skills-security-skill-vetter". 4. Verify with no network calls: frontmatter valid, files in place. 5. Report what was installed, where, and what I still need to do myself (e.g. nothing — hand it any skill file and ask for a vetting report before installing). GitHub is optional: if I have a GitHub account or the gh CLI, you may use it; otherwise public access is fine. Never require it unless it's in the prerequisites above. Rules: don't touch anything outside the temp folder and the install target. If anything looks off, stop and ask me. ``` **Install prompt FR:** ``` Prérequis : aucun — un skill de checklist pur ; fonctionne avec tout fichier de skill à vérifier avant installation Installe-moi « Vérification de sécurité pré-installation des skills ». Donne à mon agent le protocole manuel de vérification des skills — contrôle des métadonnées, analyse du périmètre des permissions, scan de contenu pour signaux d'alerte, détection de typosquatting — produisant un rapport de vérification SAFE/WARNING/DANGER/BLOCK pour tout skill avant que je l'installe Dépôt : https://github.com/useai-pro/openclaw-skills-security/blob/main/skills/skill-vetter/SKILL.md 1. Récupère le fichier SKILL.md du skill useai-pro-openclaw-skills-security-skill-vetter depuis le dépôt dans un dossier temporaire et résume en une ou deux phrases ce qu'il fait. 2. Contrôle de sécurité : examine le SKILL.md pour tout contenu suspect (appels réseau inattendus, commandes shell, récolte d'identifiants). Ce dépôt ne doit contenir aucun secret dans le code ; les identifiants passent uniquement par le coffre sécurisé, les hôtes autorisés sont déclarés dans le SKILL.md. Vérifie que c'est bien le cas ; STOP sur le moindre signal d'alerte et préviens-moi. 3. Installe-le comme skill : copie SKILL.md dans le répertoire des skills de l'agent, dans un dossier nommé « useai-pro-openclaw-skills-security-skill-vetter ». 4. Vérifie sans aucun appel réseau : frontmatter valide, fichiers en place. 5. Indique ce qui a été installé, où, et ce qu'il me reste à faire moi-même (p. ex. rien — lui donner n'importe quel fichier de skill et demander un rapport de vérification avant installation). GitHub est optionnel : si j'ai un compte GitHub ou la CLI gh, tu peux l'utiliser ; sinon l'accès public suffit. Ne jamais l'exiger sauf si c'est dans les prérequis ci-dessus. Règles : ne touche à rien en dehors du dossier temporaire et de la cible d'installation. Si quelque chose semble anormal, arrête-toi et demande-moi. ``` ---
⚙ Needs: none — a pure checklist skill; works with any skill…

Pre-install security vetting for skills - **name_fr:** Vérification de sécurité pré-installation des skills - **tl_en:** A manual-first checklist that audits any skill before install — permissions, red flags, typosquatting — and returns a SAFE/WARNING/DANGER/BLOCK verdict - **tl_fr:** Une checklist manuelle qui audite tout skill avant installation — permissions, signaux d'alerte, typosquatting — et rend un verdict SAFE/WARNING/DANGER/BLOCK - **creator:** @useai-pro - **type:** Agent skill - **url:** https://github.com/useai-pro/openclaw-skills-security - **cat:** Security - **kws:** security, vetting, audit, skills, openclaw, permissions, red flags, typosquatting, supply chain - **license:** MIT **Description EN:** Curated by Skill Harbor — a defensive security skill for vetting any OpenClaw skill before installation: a structured four-step protocol — metadata check (name, semver, author), permission-scope analysis (fileRead/fileWrite/network/shell with risk levels, flagging the network+shell combination), content analysis for critical red flags (credential paths, curl/wget, base64 obfuscation, prompt injection) and warnings, plus typosquat detection — ending in a SKILL VETTING REPORT with a SAFE / WARNING / DANGER / BLOCK verdict and a trust hierarchy for sources. By @useai-pro, listed here with credit to its creator. Honest caveats: a manual-first checklist, not an automated scanner — the agent still reads and judges; its frontmatter carries a self-reported "trust-score: 97" and an "audit" block, which are the author's own claims, not an independent verification. Discovered via skills.sh. Skill Harbor never reviews the code, review it yourself before use. **Description FR:** Sélectionné par Skill Harbor — un skill de sécurité défensive pour vérifier tout skill OpenClaw avant installation : un protocole structuré en quatre étapes — contrôle des métadonnées (nom, semver, auteur), analyse du périmètre des permissions (fileRead/fileWrite/network/shell avec niveaux de risque, signalement de la combinaison network+shell), analyse du contenu pour signaux critiques (chemins d'identifiants, curl/wget, obfuscation base64, injection de prompt) et avertissements, plus détection de typosquatting — aboutissant à un SKILL VETTING REPORT avec verdict SAFE / WARNING / DANGER / BLOCK et une hiérarchie de confiance des sources. Crédit : @useai-pro. Bémols honnêtes : une checklist manuelle, pas un scanner automatisé — l'agent lit et juge toujours ; son frontmatter porte un « trust-score: 97 » auto-déclaré et un bloc « audit », qui sont les affirmations de l'auteur, pas une vérification indépendante. Découvert via skills.sh. Skill Harbor ne vérifie jamais le code, examinez-le vous-même avant usage. **Install prompt EN:** ``` Prerequisites: none — a pure checklist skill; works with any skill file you want vetted before install Install "Pre-install security vetting for skills" for me. Give my agent the manual-first skill-vetting protocol — metadata check, permission-scope analysis, red-flag content scan, typosquat detection — producing a SAFE/WARNING/DANGER/BLOCK vetting report for any skill before I install it Repository: https://github.com/useai-pro/openclaw-skills-security/blob/main/skills/skill-vetter/SKILL.md 1. Fetch the SKILL.md file for the useai-pro-openclaw-skills-security-skill-vetter skill from the repository into a temporary folder and summarize what it does in one or two sentences. 2. Safety check: review the SKILL.md for anything suspicious (unexpected network calls, shell commands, credential harvesting). This repo should contain zero secrets in code, credentials only via the secure vault, allowed hosts declared in the SKILL.md. Verify that holds here; STOP on any red flag and tell me. 3. Install it as a skill: copy SKILL.md into the agent's skills directory, in a folder named "useai-pro-openclaw-skills-security-skill-vetter". 4. Verify with no network calls: frontmatter valid, files in place. 5. Report what was installed, where, and what I still need to do myself (e.g. nothing — hand it any skill file and ask for a vetting report before installing). GitHub is optional: if I have a GitHub account or the gh CLI, you may use it; otherwise public access is fine. Never require it unless it's in the prerequisites above. Rules: don't touch anything outside the temp folder and the install target. If anything looks off, stop and ask me. ``` **Install prompt FR:** ``` Prérequis : aucun — un skill de checklist pur ; fonctionne avec tout fichier de skill à vérifier avant installation Installe-moi « Vérification de sécurité pré-installation des skills ». Donne à mon agent le protocole manuel de vérification des skills — contrôle des métadonnées, analyse du périmètre des permissions, scan de contenu pour signaux d'alerte, détection de typosquatting — produisant un rapport de vérification SAFE/WARNING/DANGER/BLOCK pour tout skill avant que je l'installe Dépôt : https://github.com/useai-pro/openclaw-skills-security/blob/main/skills/skill-vetter/SKILL.md 1. Récupère le fichier SKILL.md du skill useai-pro-openclaw-skills-security-skill-vetter depuis le dépôt dans un dossier temporaire et résume en une ou deux phrases ce qu'il fait. 2. Contrôle de sécurité : examine le SKILL.md pour tout contenu suspect (appels réseau inattendus, commandes shell, récolte d'identifiants). Ce dépôt ne doit contenir aucun secret dans le code ; les identifiants passent uniquement par le coffre sécurisé, les hôtes autorisés sont déclarés dans le SKILL.md. Vérifie que c'est bien le cas ; STOP sur le moindre signal d'alerte et préviens-moi. 3. Installe-le comme skill : copie SKILL.md dans le répertoire des skills de l'agent, dans un dossier nommé « useai-pro-openclaw-skills-security-skill-vetter ». 4. Vérifie sans aucun appel réseau : frontmatter valide, fichiers en place. 5. Indique ce qui a été installé, où, et ce qu'il me reste à faire moi-même (p. ex. rien — lui donner n'importe quel fichier de skill et demander un rapport de vérification avant installation). GitHub est optionnel : si j'ai un compte GitHub ou la CLI gh, tu peux l'utiliser ; sinon l'accès public suffit. Ne jamais l'exiger sauf si c'est dans les prérequis ci-dessus. Règles : ne touche à rien en dehors du dossier temporaire et de la cible d'installation. Si quelque chose semble anormal, arrête-toi et demande-moi. ``` ---

A manual-first checklist that audits any skill before install — permissions, red flags, typosquatting — and returns a SAFE/WARNING/DANGER/BLOCK verdict - **tl_fr:** Une checklist manuelle qui audite tout skill avant installation — permissions, signaux d'alerte, typosquatting — et rend un verdict SAFE/WARNING/DANGER/BLOCK - **creator:** @useai-pro - **type:** Agent skill - **url:** https://github.com/useai-pro/openclaw-skills-security - **cat:** Security - **kws:** security, vetting, audit, skills, openclaw, permissions, red flags, typosquatting, supply chain - **license:** MIT **Description EN:** Curated by Skill Harbor — a defensive security skill for vetting any OpenClaw skill before installation: a structured four-step protocol — metadata check (name, semver, author), permission-scope analysis (fileRead/fileWrite/network/shell with risk levels, flagging the network+shell combination), content analysis for critical red flags (credential paths, curl/wget, base64 obfuscation, prompt injection) and warnings, plus typosquat detection — ending in a SKILL VETTING REPORT with a SAFE / WARNING / DANGER / BLOCK verdict and a trust hierarchy for sources. By @useai-pro, listed here with credit to its creator. Honest caveats: a manual-first checklist, not an automated scanner — the agent still reads and judges; its frontmatter carries a self-reported "trust-score: 97" and an "audit" block, which are the author's own claims, not an independent verification. Discovered via skills.sh. Skill Harbor never reviews the code, review it yourself before use. **Description FR:** Sélectionné par Skill Harbor — un skill de sécurité défensive pour vérifier tout skill OpenClaw avant installation : un protocole structuré en quatre étapes — contrôle des métadonnées (nom, semver, auteur), analyse du périmètre des permissions (fileRead/fileWrite/network/shell avec niveaux de risque, signalement de la combinaison network+shell), analyse du contenu pour signaux critiques (chemins d'identifiants, curl/wget, obfuscation base64, injection de prompt) et avertissements, plus détection de typosquatting — aboutissant à un SKILL VETTING REPORT avec verdict SAFE / WARNING / DANGER / BLOCK et une hiérarchie de confiance des sources. Crédit : @useai-pro. Bémols honnêtes : une checklist manuelle, pas un scanner automatisé — l'agent lit et juge toujours ; son frontmatter porte un « trust-score: 97 » auto-déclaré et un bloc « audit », qui sont les affirmations de l'auteur, pas une vérification indépendante. Découvert via skills.sh. Skill Harbor ne vérifie jamais le code, examinez-le vous-même avant usage. **Install prompt EN:** ``` Prerequisites: none — a pure checklist skill; works with any skill file you want vetted before install Install "Pre-install security vetting for skills" for me. Give my agent the manual-first skill-vetting protocol — metadata check, permission-scope analysis, red-flag content scan, typosquat detection — producing a SAFE/WARNING/DANGER/BLOCK vetting report for any skill before I install it Repository: https://github.com/useai-pro/openclaw-skills-security/blob/main/skills/skill-vetter/SKILL.md 1. Fetch the SKILL.md file for the useai-pro-openclaw-skills-security-skill-vetter skill from the repository into a temporary folder and summarize what it does in one or two sentences. 2. Safety check: review the SKILL.md for anything suspicious (unexpected network calls, shell commands, credential harvesting). This repo should contain zero secrets in code, credentials only via the secure vault, allowed hosts declared in the SKILL.md. Verify that holds here; STOP on any red flag and tell me. 3. Install it as a skill: copy SKILL.md into the agent's skills directory, in a folder named "useai-pro-openclaw-skills-security-skill-vetter". 4. Verify with no network calls: frontmatter valid, files in place. 5. Report what was installed, where, and what I still need to do myself (e.g. nothing — hand it any skill file and ask for a vetting report before installing). GitHub is optional: if I have a GitHub account or the gh CLI, you may use it; otherwise public access is fine. Never require it unless it's in the prerequisites above. Rules: don't touch anything outside the temp folder and the install target. If anything looks off, stop and ask me. ``` **Install prompt FR:** ``` Prérequis : aucun — un skill de checklist pur ; fonctionne avec tout fichier de skill à vérifier avant installation Installe-moi « Vérification de sécurité pré-installation des skills ». Donne à mon agent le protocole manuel de vérification des skills — contrôle des métadonnées, analyse du périmètre des permissions, scan de contenu pour signaux d'alerte, détection de typosquatting — produisant un rapport de vérification SAFE/WARNING/DANGER/BLOCK pour tout skill avant que je l'installe Dépôt : https://github.com/useai-pro/openclaw-skills-security/blob/main/skills/skill-vetter/SKILL.md 1. Récupère le fichier SKILL.md du skill useai-pro-openclaw-skills-security-skill-vetter depuis le dépôt dans un dossier temporaire et résume en une ou deux phrases ce qu'il fait. 2. Contrôle de sécurité : examine le SKILL.md pour tout contenu suspect (appels réseau inattendus, commandes shell, récolte d'identifiants). Ce dépôt ne doit contenir aucun secret dans le code ; les identifiants passent uniquement par le coffre sécurisé, les hôtes autorisés sont déclarés dans le SKILL.md. Vérifie que c'est bien le cas ; STOP sur le moindre signal d'alerte et préviens-moi. 3. Installe-le comme skill : copie SKILL.md dans le répertoire des skills de l'agent, dans un dossier nommé « useai-pro-openclaw-skills-security-skill-vetter ». 4. Vérifie sans aucun appel réseau : frontmatter valide, fichiers en place. 5. Indique ce qui a été installé, où, et ce qu'il me reste à faire moi-même (p. ex. rien — lui donner n'importe quel fichier de skill et demander un rapport de vérification avant installation). GitHub est optionnel : si j'ai un compte GitHub ou la CLI gh, tu peux l'utiliser ; sinon l'accès public suffit. Ne jamais l'exiger sauf si c'est dans les prérequis ci-dessus. Règles : ne touche à rien en dehors du dossier temporaire et de la cible d'installation. Si quelque chose semble anormal, arrête-toi et demande-moi. ``` ---

At a glance
What
A manual-first checklist that audits any skill before install — permissions, red flags, typosquatting — and returns a SAFE/WARNING/DANGER/BLOCK verdict - **tl_fr:** Une checklist manuelle qui audite tout skill avant installation — permissions, signaux d'alerte, typosquatting — et rend un verdict SAFE/WARNING/DANGER/BLOCK - **creator:** @useai-pro - **type:** Agent skill - **url:** https://github.com/useai-pro/openclaw-skills-security - **cat:** Security - **kws:** security, vetting, audit, skills, openclaw, permissions, red flags, typosquatting, supply chain - **license:** MIT **Description EN:** Curated by Skill Harbor — a defensive security skill for vetting any OpenClaw skill before installation: a structured four-step protocol — metadata check (name, semver, author), permission-scope analysis (fileRead/fileWrite/network/shell with risk levels, flagging the network+shell combination), content analysis for critical red flags (credential paths, curl/wget, base64 obfuscation, prompt injection) and warnings, plus typosquat detection — ending in a SKILL VETTING REPORT with a SAFE / WARNING / DANGER / BLOCK verdict and a trust hierarchy for sources. By @useai-pro, listed here with credit to its creator. Honest caveats: a manual-first checklist, not an automated scanner — the agent still reads and judges; its frontmatter carries a self-reported "trust-score: 97" and an "audit" block, which are the author's own claims, not an independent verification. Discovered via skills.sh. Skill Harbor never reviews the code, review it yourself before use. **Description FR:** Sélectionné par Skill Harbor — un skill de sécurité défensive pour vérifier tout skill OpenClaw avant installation : un protocole structuré en quatre étapes — contrôle des métadonnées (nom, semver, auteur), analyse du périmètre des permissions (fileRead/fileWrite/network/shell avec niveaux de risque, signalement de la combinaison network+shell), analyse du contenu pour signaux critiques (chemins d'identifiants, curl/wget, obfuscation base64, injection de prompt) et avertissements, plus détection de typosquatting — aboutissant à un SKILL VETTING REPORT avec verdict SAFE / WARNING / DANGER / BLOCK et une hiérarchie de confiance des sources. Crédit : @useai-pro. Bémols honnêtes : une checklist manuelle, pas un scanner automatisé — l'agent lit et juge toujours ; son frontmatter porte un « trust-score: 97 » auto-déclaré et un bloc « audit », qui sont les affirmations de l'auteur, pas une vérification indépendante. Découvert via skills.sh. Skill Harbor ne vérifie jamais le code, examinez-le vous-même avant usage. **Install prompt EN:** ``` Prerequisites: none — a pure checklist skill; works with any skill file you want vetted before install Install "Pre-install security vetting for skills" for me. Give my agent the manual-first skill-vetting protocol — metadata check, permission-scope analysis, red-flag content scan, typosquat detection — producing a SAFE/WARNING/DANGER/BLOCK vetting report for any skill before I install it Repository: https://github.com/useai-pro/openclaw-skills-security/blob/main/skills/skill-vetter/SKILL.md 1. Fetch the SKILL.md file for the useai-pro-openclaw-skills-security-skill-vetter skill from the repository into a temporary folder and summarize what it does in one or two sentences. 2. Safety check: review the SKILL.md for anything suspicious (unexpected network calls, shell commands, credential harvesting). This repo should contain zero secrets in code, credentials only via the secure vault, allowed hosts declared in the SKILL.md. Verify that holds here; STOP on any red flag and tell me. 3. Install it as a skill: copy SKILL.md into the agent's skills directory, in a folder named "useai-pro-openclaw-skills-security-skill-vetter". 4. Verify with no network calls: frontmatter valid, files in place. 5. Report what was installed, where, and what I still need to do myself (e.g. nothing — hand it any skill file and ask for a vetting report before installing). GitHub is optional: if I have a GitHub account or the gh CLI, you may use it; otherwise public access is fine. Never require it unless it's in the prerequisites above. Rules: don't touch anything outside the temp folder and the install target. If anything looks off, stop and ask me. ``` **Install prompt FR:** ``` Prérequis : aucun — un skill de checklist pur ; fonctionne avec tout fichier de skill à vérifier avant installation Installe-moi « Vérification de sécurité pré-installation des skills ». Donne à mon agent le protocole manuel de vérification des skills — contrôle des métadonnées, analyse du périmètre des permissions, scan de contenu pour signaux d'alerte, détection de typosquatting — produisant un rapport de vérification SAFE/WARNING/DANGER/BLOCK pour tout skill avant que je l'installe Dépôt : https://github.com/useai-pro/openclaw-skills-security/blob/main/skills/skill-vetter/SKILL.md 1. Récupère le fichier SKILL.md du skill useai-pro-openclaw-skills-security-skill-vetter depuis le dépôt dans un dossier temporaire et résume en une ou deux phrases ce qu'il fait. 2. Contrôle de sécurité : examine le SKILL.md pour tout contenu suspect (appels réseau inattendus, commandes shell, récolte d'identifiants). Ce dépôt ne doit contenir aucun secret dans le code ; les identifiants passent uniquement par le coffre sécurisé, les hôtes autorisés sont déclarés dans le SKILL.md. Vérifie que c'est bien le cas ; STOP sur le moindre signal d'alerte et préviens-moi. 3. Installe-le comme skill : copie SKILL.md dans le répertoire des skills de l'agent, dans un dossier nommé « useai-pro-openclaw-skills-security-skill-vetter ». 4. Vérifie sans aucun appel réseau : frontmatter valide, fichiers en place. 5. Indique ce qui a été installé, où, et ce qu'il me reste à faire moi-même (p. ex. rien — lui donner n'importe quel fichier de skill et demander un rapport de vérification avant installation). GitHub est optionnel : si j'ai un compte GitHub ou la CLI gh, tu peux l'utiliser ; sinon l'accès public suffit. Ne jamais l'exiger sauf si c'est dans les prérequis ci-dessus. Règles : ne touche à rien en dehors du dossier temporaire et de la cible d'installation. Si quelque chose semble anormal, arrête-toi et demande-moi. ``` ---
Cost
Free
Needs
none — a pure checklist skill; works with any skill file you want vetted before install
Install
Copy the installer prompt below into your Muse — your agent does the rest.

Version:

@
Created by: @useai-pro
⌁

Install

Prerequisites: none — a pure checklist skill; works with any skill file you want vetted before install Install "Pre-install security vetting for skills" for me. Give my agent the manual-first skill-vetting protocol — metadata check, permission-scope analysis, red-flag content scan, typosquat detection — producing a SAFE/WARNING/DANGER/BLOCK vetting report for any skill before I install it Repository: https://github.com/useai-pro/openclaw-skills-security/blob/main/skills/skill-vetter/SKILL.md 1. Fetch the SKILL.md file for the useai-pro-openclaw-skills-security-skill-vetter skill from the repository into a temporary folder and summarize what it does in one or two sentences. 2. Safety check: review the SKILL.md for anything suspicious (unexpected network calls, shell commands, credential harvesting). This repo should contain zero secrets in code, credentials only via the secure vault, allowed hosts declared in the SKILL.md. Verify that holds here; STOP on any red flag and tell me. 3. Install it as a skill: copy SKILL.md into the agent's skills directory, in a folder named "useai-pro-openclaw-skills-security-skill-vetter". 4. Verify with no network calls: frontmatter valid, files in place. 5. Report what was installed, where, and what I still need to do myself (e.g. nothing — hand it any skill file and ask for a vetting report before installing). GitHub is optional: if I have a GitHub account or the gh CLI, you may use it; otherwise public access is fine. Never require it unless it's in the prerequisites above. Rules: don't touch anything outside the temp folder and the install target. If anything looks off, stop and ask me.

?

Questions

How do I install a build?

Every product page includes a copy-paste install prompt. Paste it into your Muse and it sets the build up for you — no manual configuration.

Where does my money go?

Straight to the seller. Skill Harbor never processes payments: checkout happens on the seller’s own page, usually Stripe.

What does the ✓ next to a creator’s name mean?

It means we confirmed the identity of the person behind the listing. It says nothing about the code itself — always check a build before installing it.