← 返回 Skills 市场
Onetrust
作者
Membrane Dev
· GitHub ↗
· v1.0.1
· MIT-0
141
总下载
0
收藏
0
当前安装
2
版本数
在 OpenClaw 中安装
/install onetrust
功能描述
OneTrust integration. Manage data, records, and automate workflows. Use when the user wants to interact with OneTrust data.
安全使用建议
This skill appears coherent and limited in scope, but take these precautions before installing/using it: 1) Verify the @membranehq/cli npm package: check the publisher, GitHub repository (https://github.com/membranedev/application-skills is referenced), package page, and recent release notes to ensure you trust the source. 2) Consider installing the CLI in a controlled environment (container or VM) first instead of system-wide with -g. 3) During 'membrane login', review the OAuth scopes and the authorization URL before consenting; confirm the tenant/connection you create corresponds to your OneTrust account. 4) Never paste OneTrust API keys or unrelated secrets into chat; the skill itself instructs using Membrane to avoid local secret handling. 5) If you need higher assurance, ask the publisher for a signed release or checksum for the CLI package and/or review the CLI repository code before installing.
功能分析
Type: OpenClaw Skill
Name: onetrust
Version: 1.0.1
The skill is a standard integration for OneTrust using the Membrane CLI (@membranehq/cli). It provides instructions for the agent to install the CLI, authenticate, and manage OneTrust workflows through the Membrane platform. No malicious code, data exfiltration, or suspicious prompt-injection patterns were found; the behavior is consistent with the stated purpose of the integration.
能力评估
Purpose & Capability
The name/description (OneTrust integration) match the runtime instructions: all actions are performed via the Membrane CLI and the skill advises creating a connection to OneTrust. There are no environment variables, unrelated binaries, or configuration paths requested that would be inconsistent with a connector-based integration.
Instruction Scope
SKILL.md limits runtime behavior to installing/using the Membrane CLI, creating a connection, listing/searching/creating/running connector actions, and handling interactive/headless login. It does not instruct reading arbitrary files, accessing other credentials, or sending data to unexpected endpoints. It explicitly advises against asking the user for API keys.
Install Mechanism
The skill recommends 'npm install -g @membranehq/cli@latest' (a public npm package). This is an expected way to install a CLI but carries the usual risk of installing and running third-party code globally. The recommendation is proportionate, but verify the package identity (publisher, repo, checksums) before installing globally.
Credentials
No environment variables, secrets, or unrelated credentials are requested. Authentication is delegated to Membrane (OAuth-style login flow), which is consistent with the stated design to avoid local secret handling.
Persistence & Privilege
The skill is instruction-only, has no install script, and does not request 'always: true' or other elevated persistent privileges. The only persistent change the instructions suggest is installing the Membrane CLI, which is expected for a CLI-driven integration.
如何使用
- 确保已安装 OpenClaw(本地或 Docker 部署)
- 在对话框中输入安装命令:
/install onetrust - 安装完成后,直接呼叫该 Skill 的名称或使用
/onetrust触发 - 根据 Skill 的参数说明提供必要输入,即可获得结构化输出
版本历史
v1.0.1
Auto sync from membranedev/application-skills
v1.0.0
Auto sync from membranedev/application-skills
元数据
常见问题
Onetrust 是什么?
OneTrust integration. Manage data, records, and automate workflows. Use when the user wants to interact with OneTrust data. 它是一个面向 Claude Code / OpenClaw 的 AI Agent Skill 插件,目前累计下载 141 次。
如何安装 Onetrust?
在 OpenClaw 或 Claude Code 对话框中运行命令「/install onetrust」即可一键安装,无需额外配置。
Onetrust 是免费的吗?
是的,Onetrust 完全免费,采用 MIT-0 许可证,可自由下载、安装和使用。
Onetrust 支持哪些平台?
Onetrust 跨平台运行,可在任意部署了 OpenClaw / Claude Code 的环境中使用(cross-platform)。
谁开发了 Onetrust?
由 Membrane Dev(@membranedev)开发并维护,当前版本 v1.0.1。
推荐 Skills