← Back to Skills Marketplace
roojenkins

Uplo Media

by RooJenkins · GitHub ↗ · v1.0.0 · MIT-0
cross-platform ⚠ suspicious
149
Downloads
0
Stars
0
Active Installs
1
Versions
Install in OpenClaw
/install uplo-media
Description
AI-powered media knowledge management. Search content production records, licensing agreements, distribution data, and audience analytics with structured ext...
Usage Guidance
This skill appears to do what it says (media rights/production knowledge queries) but there are several things to verify before installing: 1) Confirm the skill's source and publisher—there's no homepage or authoritative source listed in the registry; verify 'UPLO' identity and the npm package '@agentdocs1/mcp-server' are legitimate. 2) Prefer using a scoped, least-privilege API key for your UPLO/MCP instance and confirm acceptable data access/retention policies (who can read exported org context and logged conversations). 3) Understand that the agent will run 'npx @agentdocs1/mcp-server' (fetching and executing code from npm at runtime); if you cannot verify the package, avoid installing or run in an isolated/staging environment. 4) Ask the publisher for an explicit privacy/data-retention statement and the exact npm package checksums or a link to a canonical release (GitHub release or company domain) to validate the runtime artifact. If you cannot validate the package/publisher or limit the API key scope, treat this skill as risky and do not install in production.
Capability Analysis
Type: OpenClaw Skill Name: uplo-media Version: 1.0.0 The skill facilitates media industry knowledge management but includes high-risk capabilities such as 'export_org_context' for broad organizational data extraction and 'npx' for executing a remote package (@agentdocs1/mcp-server) in skill.json. While these tools are aligned with the stated purpose of managing complex media rights and production data, the combination of broad data access and remote code execution via a generic-looking npm scope meets the threshold for a suspicious classification. Additionally, SKILL.md contains instructions for the agent to automatically execute multiple tools at the start of a session, which increases the risk of unauthorized data exposure if the agent is misconfigured.
Capability Assessment
Purpose & Capability
Name, README, SKILL.md, and identity-patch all describe a media knowledge-management integration and the listed MCP tools (search_knowledge, search_with_context, get_directives, export_org_context, etc.) are coherent with that purpose. The skill requests access to an UPLO/MCP endpoint and API key in skill.json, which is appropriate for a connector to a hosted knowledge service.
Instruction Scope
Runtime instructions in SKILL.md are narrowly scoped to querying the organization's knowledge base and related directives (search_* calls, get_directives, log_conversation, propose_update, report_knowledge_gap). These actions align with the stated purpose but do involve reading and logging potentially sensitive org data (rights, contracts, talent compensation). The guidance to 'log_conversation' and 'export_org_context' are useful but increase the sensitivity of data that may be captured; the skill does not provide details about retention, export destinations, or access controls.
Install Mechanism
The skill has no formal install spec in the package registry summary, but skill.json / README instructs running an MCP server via 'npx -y @agentdocs1/mcp-server --http'. That means the agent will fetch and execute an npm package at runtime. Fetching and running a remote npm package is a moderate-to-high risk behavior unless the package and publisher are verified. There is no published homepage or authoritative source in the registry metadata to validate the package.
Credentials
skill.json declares two required config values: agentdocs_url (your UPLO instance URL) and api_key (MCP token). Those credentials are proportional to the skill's functionality. However the registry metadata earlier stated 'no required env vars'—an inconsistency. Also, the skill's workflows (export_org_context, log_conversation) imply access to broad organizational data; ensure the API key can be scoped minimally and that organization policies permit this access.
Persistence & Privilege
The skill is not forced-always (always:false) and is user-invocable (normal). It does declare an MCP server command that the agent may run to provide tools — this creates a local HTTP transport and effectively runs external code at runtime, but it does not request permanent platform-wide privileges or config changes. Autonomous invocation plus the provided API key would let the skill access org data when invoked; treat the API key as sensitive.
How to Use
  1. Make sure OpenClaw is installed (local or Docker)
  2. Run the install command in chat: /install uplo-media
  3. After installation, invoke the skill by name or use /uplo-media
  4. Provide required inputs per the skill's parameter spec and get structured output
Version History
v1.0.0
Initial release of uplo-media: AI-powered knowledge management for media industry documentation. - Provides structured search across production records, licensing agreements, distribution data, and audience analytics. - Supports workflows such as rights checks, production budget reconciliation, talent availability, and performance analysis. - Includes key tools: search_with_context, search_knowledge, get_directives, propose_update, and report_knowledge_gap. - Offers actionable tips for searching media documentation and managing time-sensitive rights data. - Designed to answer complex media industry questions and streamline content operations.
Metadata
Slug uplo-media
Version 1.0.0
License MIT-0
All-time Installs 0
Active Installs 0
Total Versions 1
Frequently Asked Questions

What is Uplo Media?

AI-powered media knowledge management. Search content production records, licensing agreements, distribution data, and audience analytics with structured ext... It is an AI Agent Skill for Claude Code / OpenClaw, with 149 downloads so far.

How do I install Uplo Media?

Run "/install uplo-media" in the OpenClaw or Claude Code chat to install it in one step — no extra setup required.

Is Uplo Media free?

Yes, Uplo Media is completely free, licensed under MIT-0. You can download, install and use it at no cost.

Which platforms does Uplo Media support?

Uplo Media is cross-platform and runs anywhere OpenClaw / Claude Code is available (cross-platform).

Who created Uplo Media?

It is built and maintained by RooJenkins (@roojenkins); the current version is v1.0.0.

💬 Comments