openclaw-indigo
Pass
Audited by Gen Agent Trust Hub on Mar 10, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill configuration in openclaw.plugin.json specifies the use of npx @indigoprotocol/indigo-mcp to run the Indigo MCP server. This is a vendor-owned resource corresponding to the skill author.
- [COMMAND_EXECUTION]: The skill defines chat commands (e.g., /cdp list, /price, /stake) that trigger specific MCP tool handlers. These commands allow users to interact with the Indigo Protocol.
- [SAFE]: No malicious behavior, obfuscation, or unauthorized data access was detected. The skill's operations are consistent with its described purpose as a DeFi protocol integration.
Audit Metadata