← 返回 Skills 市场
81
总下载
0
收藏
0
当前安装
3
版本数
在 OpenClaw 中安装
/install nerua1-god-mode
功能描述
Provides advanced obfuscation, injection, multi-model voting, and roleplay techniques to bypass AI filters and elicit unrestricted responses safely.
安全使用建议
This package is explicitly designed to bypass AI safety filters. That makes it coherent with its description — but also high-risk. Before installing or enabling it, consider the following:
- Intent & policy: Using these techniques may violate terms of service and could produce illegal or harmful outputs; it can get you or your organization blocked or sanctioned. Only use for authorized security research in controlled environments.
- Code audit: Review all scripts (probe*, watcher, network calls) for any remote endpoints or telemetry. The README claims local-only (127.0.0.1) but you should verify there are no calls to remote hosts or hidden exfiltration channels.
- Avoid persistence unless necessary: Do not run install/launchagent_install.sh on shared or production machines. If you need background probing, run probe_watcher.py manually in a sandboxed environment first and inspect logs.
- Limit exposure: Run in an isolated VM or air-gapped environment, with models you control. Do not run on multi-user machines or machines with sensitive credentials.
- Legal/ethical risk: The tool includes explicit harmful prompt examples (reverse shells, ransomware, phishing templates). Even if intended for research, those capabilities create serious legal and ethical responsibilities.
- What would change this assessment: provenance (who maintains this repo), attestations that it never calls remote networks, removal or opt-in gating of automatic persistence, a clear scope-limited build that disallows certain technique categories, or institutional review/approval for research use.
If you are not an experienced security researcher with an isolated testing environment and explicit authorization, do not install or enable this skill.
功能分析
Type: OpenClaw Skill
Name: nerua1-god-mode
Version: 1.1.2
This bundle is a comprehensive toolkit designed to bypass LLM safety filters (jailbreaking) using techniques like unicode obfuscation, token smuggling, and prefill injection. It includes high-risk behaviors such as automated model probing (scripts/probe.py) and the installation of a macOS LaunchAgent for persistence (install/launchagent_install.sh) to run a background model watcher (scripts/probe_watcher.py). While the stated intent is security research and the network activity is limited to localhost (127.0.0.1:1234), the combination of automated security circumvention and persistence mechanisms makes this bundle highly risky.
能力标签
能力评估
Purpose & Capability
The name/description (bypass/obfuscation) align with the included scripts (encode, prefill, roleplay, probe, smuggling, abliterate). The required environment/credentials are minimal (none), which is consistent. Note: the presence of a macOS LaunchAgent installer and an automatic probe/watcher implies the skill can persistently monitor models and auto-apply bypasses — capability matches purpose but increases risk and scope beyond a simple prompt-tool.
Instruction Scope
SKILL.md and the scripts explicitly instruct the agent to inject system prompts, prefills, obfuscate trigger words, run multi-model voting, and automatically probe models with 'borderline' prompts (including medium/hard-level harmful examples). The instructions direct automatic wrapping of prompts so the model 'never refuses' and include explicit examples of exploit/attack prompts (reverse shells, buffer overflows, ransomware encryption flows, phishing templates). This is direct and targeted scope creep from innocuous 'formatting' to deliberate safety-filter circumvention and production of possibly harmful content.
Install Mechanism
Registry shows no formal install spec (instruction-only), but the package contains an install/launchagent_install.sh that writes a LaunchAgent plist and loads it (macOS persistent background process). Other install suggestions (git clone, npx) are standard, but the LaunchAgent step creates persistent autorun behavior and KeepAlive — a higher-risk install mechanism not visible in the registry metadata.
Credentials
The skill requests no environment variables or external credentials (proportionate). It does, however, read/write local files (e.g., scripts/model_profiles.json) and is designed to call local LM Studio endpoints (README claims 127.0.0.1:1234). No external endpoints are declared in the registry, which is plausible, but the codebase and docs should be audited to confirm there are truly no remote network calls or telemetry. Lack of declared credentials is expected for a local-only tool, but persistence + local network calls together increase the attack surface.
Persistence & Privilege
The skill is not always:true in metadata, but includes an optional LaunchAgent installer that makes it automatically run on login and KeepAlive. SKILL.md also describes automatic probing when new models appear and auto-application of techniques. Persistent background processes that auto-probe and auto-wrap prompts significantly increase blast radius (autonomous application of filter-bypass techniques).
如何使用
- 确保已安装 OpenClaw(本地或 Docker 部署)
- 在对话框中输入安装命令:
/install nerua1-god-mode - 安装完成后,直接呼叫该 Skill 的名称或使用
/nerua1-god-mode触发 - 根据 Skill 的参数说明提供必要输入,即可获得结构化输出
版本历史
v1.1.2
Add explanation for VirusTotal false positive (base64 + localhost HTTP = expected)
v1.1.1
Remove subprocess/launchctl pattern that triggered VirusTotal scanner
v1.1.0
### God Mode Skill 1.1.0
- Added detailed SKILL.md with full documentation of all bypass and obfuscation techniques, usage instructions, and safety guidelines.
- Expanded explanation and reference for Parseltongue (33 obfuscation methods), Prefill Injection (27 templates), Tastemaker, Ultraplinian, Roleplay Patterns, and Token Smuggling.
- Introduced step-by-step guidance for integration with OpenClaw and new auto-probe mechanism for model susceptibility detection.
- Included sample code snippets for both basic and advanced usage.
- Provided best practices, examples, and strong ethical usage warnings.
元数据
常见问题
God Mode 是什么?
Provides advanced obfuscation, injection, multi-model voting, and roleplay techniques to bypass AI filters and elicit unrestricted responses safely. 它是一个面向 Claude Code / OpenClaw 的 AI Agent Skill 插件,目前累计下载 81 次。
如何安装 God Mode?
在 OpenClaw 或 Claude Code 对话框中运行命令「/install nerua1-god-mode」即可一键安装,无需额外配置。
God Mode 是免费的吗?
是的,God Mode 完全免费,采用 MIT-0 许可证,可自由下载、安装和使用。
God Mode 支持哪些平台?
God Mode 跨平台运行,可在任意部署了 OpenClaw / Claude Code 的环境中使用(cross-platform)。
谁开发了 God Mode?
由 nerua1(@nerua1)开发并维护,当前版本 v1.1.2。
推荐 Skills