← Back to Skills Marketplace
yaozheng-fang

Volcengine VeADK Skills

by yaozheng-fang · GitHub ↗ · v1.0.0
cross-platform ✓ Security Clean
1447
Downloads
0
Stars
136
Active Installs
1
Versions
Install in OpenClaw
/install veadk-skills
Description
根据用户的功能需求,完成与 VeADK 相关的功能。
Usage Guidance
Install this only if you want an agent to generate VeADK project files. Before allowing the save step, check that the destination paths are inside your intended project directory, avoid overwriting existing files unintentionally, and review any generated agent code before running it, especially if it includes a Python code-execution tool.
Capability Analysis
Type: OpenClaw Skill Name: veadk-skills Version: 1.0.0 The skill bundle is suspicious due to high-risk capabilities that enable prompt injection for arbitrary file write and code execution. The `SKILL.md` instructs the AI agent to use `scripts/save_file.py` with agent-determined paths and content, and `save_file.py` performs no path validation, allowing arbitrary file writes. Additionally, `references/common/tools.md` and `references/converter/dify_rules.md` explicitly instruct the agent to use a `run_code` tool for executing Python code, which, without strong sandboxing, poses a significant risk for arbitrary code execution via prompt injection.
Capability Assessment
Purpose & Capability
The artifacts consistently describe generating or converting VeADK Agent code from requirements, Langchain/Langgraph code, or Dify workflows; references to web search and Python code execution are guidance for generated VeADK agents, not hidden behavior by the skill itself.
Instruction Scope
The skill discloses a post-generation save step and names the expected files under an agent directory, but it does not require confirmation of final paths before writing.
Install Mechanism
No installer, dependency installation, remote download, startup hook, or auto-run mechanism is present; the only executable helper is a small local file-writing script.
Credentials
Local file creation is proportionate for a code-generation skill, but scripts/save_file.py accepts caller-supplied paths and creates parent directories without path validation.
Persistence & Privilege
The skill can persist generated code files, but the artifacts show no credential access, background worker, privilege escalation, broad local indexing, account access, or data exfiltration.
How to Use
  1. Make sure OpenClaw is installed (local or Docker)
  2. Run the install command in chat: /install veadk-skills
  3. After installation, invoke the skill by name or use /veadk-skills
  4. Provide required inputs per the skill's parameter spec and get structured output
Version History
v1.0.0
veadk-skills 1.0.0 - Initial release with support for generating VeADK Agent code based on user requirements. - Enables conversion of existing Langchain/Langgraph code to VeADK Agent code. - Supports transforming Dify workflow DSL (YAML) into VeADK Agent code. - Provides step-by-step guidance for each workflow, including code analysis, prompt refinement, and code generation. - Details file structure and script usage for saving generated Agent code.
Metadata
Slug veadk-skills
Version 1.0.0
License
All-time Installs 136
Active Installs 136
Total Versions 1
Frequently Asked Questions

What is Volcengine VeADK Skills?

根据用户的功能需求,完成与 VeADK 相关的功能。 It is an AI Agent Skill for Claude Code / OpenClaw, with 1447 downloads so far.

How do I install Volcengine VeADK Skills?

Run "/install veadk-skills" in the OpenClaw or Claude Code chat to install it in one step — no extra setup required.

Is Volcengine VeADK Skills free?

Yes, Volcengine VeADK Skills is completely free (open-source). You can download, install and use it at no cost.

Which platforms does Volcengine VeADK Skills support?

Volcengine VeADK Skills is cross-platform and runs anywhere OpenClaw / Claude Code is available (cross-platform).

Who created Volcengine VeADK Skills?

It is built and maintained by yaozheng-fang (@yaozheng-fang); the current version is v1.0.0.

💬 Comments