/install mailscope-email-detection-skill
Mailscope Email Detection
Use this skill when the user wants to perform security analysis on an email (.eml) file. The skill provides a comprehensive security assessment report by uploading the file to the Mailscope analysis platform.
Language
Respond in the user's language. If they write in Chinese, reply in Chinese; if English, English. Keep technical tokens (paths, flags, field names) in English.
Workflow
Step 0: Configure API Key
When the user provides an API key (e.g., "我的 key 是 msk_xxx", "帮我配置 API Key", "set api key to msk_xxx", "这是key: msk_xxx"), write it into config.json:
- Check if
config.jsonexists in the skill root directory. If not, readconfig.json.exampleas a template and createconfig.jsonfrom it. - Read the current
config.jsonand parse it as JSON. - Set the
api_keyfield to the key the user provided. - Write the updated JSON back to
config.json(use 2-space indentation for readability). - Confirm to the user: "API Key 已配置成功。"
The user gets their API key by applying at https://x.lizhisec.com. If they ask where to get one, point them there.
Step 1: Check prerequisites
Before running the analysis, verify these conditions are met:
- Node.js 22+ is available. Check with
node --version. If not available, tell the user to install Node.js 22+. - config.json exists with a valid
api_key. If missing, guide the user through Step 0 above.
Step 2: Run the analysis script
npx tsx scripts/analyze.ts \x3Cpath/to/email.eml>
The script will:
- Upload the .eml file to the analysis platform
- Poll for results every 3 seconds until analysis completes
- Display a formatted security analysis report
Step 3: Interpret results for the user
The report output is self-contained and human-readable. Key elements to help the user understand:
- 风险等级 (Risk Tier):
risky(dangerous),clean(safe), or other levels - 置信度 (Confidence): AI confidence percentage
- 身份认证 (Authentication): SPF, DKIM, DMARC results
- 域名信息 (Domain Profile): Registration date, ICP record - recently registered domains are suspicious
- AI 综合分析 (AI Analysis): Detailed threat assessment covering identity verification, behavioral patterns, intent recognition, and comprehensive judgment
If the email is flagged as risky, emphasize the recommended actions:
- Isolate the email immediately
- Block the sender domain
- Do NOT open attachments or enter passwords
- Preserve the .eml file for forensics
Error handling
Common errors and how to address them:
| Error | Cause | Solution |
|---|---|---|
| API key not configured | Missing or empty config.json | Guide user to set up config.json |
| Upload failed (HTTP 4xx) | Invalid API key | Re-apply at https://x.lizhisec.com |
| Analysis failed | Email could not be processed | Check if the .eml file is malformed |
| Analysis timeout | Platform overloaded | Wait and retry later |
| File not found | Path typo | Verify the .eml file path |
What NOT to do
- Do NOT read raw JSON from the API response and present it directly to users
- Do NOT hardcode any API keys in responses visible to the user
- Do NOT modify
config.jsonunless the user explicitly asked you to configure their API key (see Step 0) - Do NOT expose the API_BASE_URL configuration to users (internal detail)
- 确保已安装 OpenClaw(本地或 Docker 部署)
- 在对话框中输入安装命令:
/install mailscope-email-detection-skill - 安装完成后,直接呼叫该 Skill 的名称或使用
/mailscope-email-detection-skill触发 - 根据 Skill 的参数说明提供必要输入,即可获得结构化输出
Mailscope Email Detection 是什么?
Email security detection and analysis. Use this skill whenever the user wants to analyze, scan, or check the security of an email (.eml) file. This includes... 它是一个面向 Claude Code / OpenClaw 的 AI Agent Skill 插件,目前累计下载 36 次。
如何安装 Mailscope Email Detection?
在 OpenClaw 或 Claude Code 对话框中运行命令「/install mailscope-email-detection-skill」即可一键安装,无需额外配置。
Mailscope Email Detection 是免费的吗?
是的,Mailscope Email Detection 完全免费,采用 MIT-0 许可证,可自由下载、安装和使用。
Mailscope Email Detection 支持哪些平台?
Mailscope Email Detection 跨平台运行,可在任意部署了 OpenClaw / Claude Code 的环境中使用(cross-platform)。
谁开发了 Mailscope Email Detection?
由 CSN:)(@ddgszc)开发并维护,当前版本 v0.1.0。