← 返回 Skills 市场
romainsantoli-web

Firm Vs Bridge Pack

作者 romainsantoli-web · GitHub ↗ · v1.0.0
cross-platform ⚠ suspicious
374
总下载
0
收藏
2
当前安装
1
版本数
在 OpenClaw 中安装
/install firm-vs-bridge-pack
功能描述
VS Code bridge pack. Context push/pull and session linking between VS Code and OpenClaw Gateway. 4 bridge tools.
使用说明 (SKILL.md)

firm-vs-bridge-pack

⚠️ Contenu généré par IA — validation humaine requise avant utilisation.

Purpose

Bridges VS Code editor context with OpenClaw Gateway. Pushes/pulls context (selections, files, diagnostics) and links/monitors editor sessions.

Tools (4)

Tool Description
vs_context_push Push VS Code context to Gateway
vs_context_pull Pull context from Gateway to VS Code
vs_session_link Link VS Code session to Gateway agent
vs_session_status Check VS Code session link status

Usage

skills:
  - firm-vs-bridge-pack

# Sync context with VS Code:
vs_context_push selection="current file content"
vs_context_pull
vs_session_status

Requirements

  • mcp-openclaw-extensions >= 3.0.0
  • VS Code with OpenClaw extension
安全使用建议
This skill is plausible for connecting VS Code to an OpenClaw Gateway, but it is underspecified and lacks provenance: there is no source repository or homepage, and the SKILL.md does not describe authentication or where editor data is sent. Before installing: 1) verify the origin of mcp-openclaw-extensions and the VS Code OpenClaw extension (inspect their repositories and releases); 2) ask the author for details on authentication, Gateway endpoints, and exact data transmitted; 3) confirm storage/retention policies for pushed context (files, selections, diagnostics); 4) test in an isolated environment and avoid providing credentials until you understand the auth flow; and 5) if you cannot obtain these details, do not install or enable the skill system-wide.
功能分析
Type: OpenClaw Skill Name: firm-vs-bridge-pack Version: 1.0.0 The skill bundle describes a 'VS Code bridge pack' that can 'push/pull context (selections, files, diagnostics)' and 'link/monitor editor sessions' with an 'OpenClaw Gateway'. While the stated purpose is legitimate for an IDE integration, the capability to transfer 'files' and 'diagnostics' (which can contain sensitive information) to an external entity, even if it's an 'OpenClaw Gateway', represents a significant high-risk behavior. There is no clear evidence of malicious intent (e.g., exfiltration to arbitrary external domains, persistence, or explicit prompt injection for harmful objectives), but the inherent power and data access described in SKILL.md warrant a 'suspicious' classification due to the potential for misuse or data exposure.
能力评估
Purpose & Capability
The name/description and the SKILL.md consistently describe a VS Code ↔ OpenClaw Gateway bridge and declare a dependency on mcp-openclaw-extensions and the VS Code OpenClaw extension — that fits the stated purpose. However, the skill provides no implementation, no source/homepage, and no detail about how the bridge authenticates or which Gateway endpoints are used.
Instruction Scope
Instructions only list four tools and high-level usage (push/pull/link/status). They imply reading editor selections, files and diagnostics (expected for a bridge) but do not specify where data is sent, how auth is handled, or what exact data fields are transmitted. The SKILL.md also contains an AI-generated content warning indicating it needs human validation.
Install Mechanism
Instruction-only skill with no install spec and no code files—nothing is written to disk by the skill itself. This minimizes installation risk, but it relies on external extension(s) (mcp-openclaw-extensions and VS Code OpenClaw extension) which are not included or verified here.
Credentials
The skill requests no environment variables or credentials in its metadata, which is proportionate for a thin instruction-only bridge. However, practical bridging will require authentication or tokens at runtime; the SKILL.md defers this to external extensions without documenting the auth flow, so it's unclear whether credentials are required and where they are stored/transmitted.
Persistence & Privilege
The skill does not request always:true, does not claim to modify other skills or system-wide settings, and is user-invocable. No persistence/privilege escalation is declared in the manifest.
如何使用
  1. 确保已安装 OpenClaw(本地或 Docker 部署)
  2. 在对话框中输入安装命令:/install firm-vs-bridge-pack
  3. 安装完成后,直接呼叫该 Skill 的名称或使用 /firm-vs-bridge-pack 触发
  4. 根据 Skill 的参数说明提供必要输入,即可获得结构化输出
版本历史
v1.0.0
Initial release — 4 tools: VS Code context push/pull, session link/status
元数据
Slug firm-vs-bridge-pack
版本 1.0.0
许可证
累计安装 2
当前安装数 2
历史版本数 1
常见问题

Firm Vs Bridge Pack 是什么?

VS Code bridge pack. Context push/pull and session linking between VS Code and OpenClaw Gateway. 4 bridge tools. 它是一个面向 Claude Code / OpenClaw 的 AI Agent Skill 插件,目前累计下载 374 次。

如何安装 Firm Vs Bridge Pack?

在 OpenClaw 或 Claude Code 对话框中运行命令「/install firm-vs-bridge-pack」即可一键安装,无需额外配置。

Firm Vs Bridge Pack 是免费的吗?

是的,Firm Vs Bridge Pack 完全免费(开源免费),可自由下载、安装和使用。

Firm Vs Bridge Pack 支持哪些平台?

Firm Vs Bridge Pack 跨平台运行,可在任意部署了 OpenClaw / Claude Code 的环境中使用(cross-platform)。

谁开发了 Firm Vs Bridge Pack?

由 romainsantoli-web(@romainsantoli-web)开发并维护,当前版本 v1.0.0。

💬 留言讨论