← 返回 Skills 市场
Puppet
作者
Vlad Ursul
· GitHub ↗
· v1.0.1
· MIT-0
131
总下载
0
收藏
1
当前安装
2
版本数
在 OpenClaw 中安装
/install puppet
功能描述
Puppet integration. Manage data, records, and automate workflows. Use when the user wants to interact with Puppet data.
安全使用建议
This skill appears coherent, but consider the following before installing: 1) It asks you to install the Membrane CLI via 'npm install -g', which runs code during installation — only proceed if you trust the @membranehq package and review its npm page/repository. 2) Using the skill requires a Membrane account and creating a connection that will hold whatever Puppet credentials you provide — verify you trust Membrane (homepage/repo) to store/handle those credentials. 3) Prefer performing the install in an isolated or controlled environment if you are cautious about global npm installs. 4) Verify the connector's permissions on the Puppet side (least privilege) and avoid providing unrelated credentials. 5) Because this is an instruction-only skill, it does not itself contain code; risk primarily comes from the external CLI and the Membrane service it uses.
功能分析
Type: OpenClaw Skill
Name: puppet
Version: 1.0.1
The skill functions as a wrapper for the Membrane CLI, requiring the agent to install a global npm package (@membranehq/cli) and delegate all authentication and logic to an external service (getmembrane.com). SKILL.md contains an extensive list of irrelevant keywords (e.g., 'Blockchain', 'Robotics', 'Artificial Intelligence') that are unrelated to Puppet infrastructure management, suggesting automated or low-quality content generation. While there is no explicit evidence of malicious intent, the requirement for high-privilege installation and the opaque execution of actions via a third-party platform warrant a suspicious classification.
能力标签
能力评估
Purpose & Capability
The name/description (Puppet integration) align with the instructions, which direct the agent to use the Membrane CLI and a Membrane connection with connectorKey 'puppet'. Nothing requested (no unrelated env vars or files) is inconsistent with a Puppet integration.
Instruction Scope
SKILL.md instructs installing/using the Membrane CLI, logging in, creating a Membrane connection, listing and running actions for Puppet — all within the scope of integrating with Puppet. The instructions do not ask the agent to read unrelated files, environment variables, or post data to unexpected endpoints.
Install Mechanism
The skill recommends installing @membranehq/cli via npm -g. Using npm for a CLI is expected, but global npm installs execute package install scripts and therefore carry moderate supply-chain risk; this is proportionate to a CLI-based integration but worth user attention.
Credentials
The skill declares no required env vars or secrets. Authentication is performed via the Membrane CLI (browser-based login or headless code flow), which is appropriate for a connector that must access Puppet credentials. Expect the Membrane account and subsequent Puppet connection to hold the needed credentials.
Persistence & Privilege
The skill is instruction-only, has no install spec that writes code to disk beyond the optional npm CLI install, and is not always:true. It does not request persistent agent-wide privileges or change other skills' configurations.
如何使用
- 确保已安装 OpenClaw(本地或 Docker 部署)
- 在对话框中输入安装命令:
/install puppet - 安装完成后,直接呼叫该 Skill 的名称或使用
/puppet触发 - 根据 Skill 的参数说明提供必要输入,即可获得结构化输出
版本历史
v1.0.1
Auto sync from membranedev/application-skills
v1.0.0
Auto sync from membranedev/application-skills
元数据
常见问题
Puppet 是什么?
Puppet integration. Manage data, records, and automate workflows. Use when the user wants to interact with Puppet data. 它是一个面向 Claude Code / OpenClaw 的 AI Agent Skill 插件,目前累计下载 131 次。
如何安装 Puppet?
在 OpenClaw 或 Claude Code 对话框中运行命令「/install puppet」即可一键安装,无需额外配置。
Puppet 是免费的吗?
是的,Puppet 完全免费,采用 MIT-0 许可证,可自由下载、安装和使用。
Puppet 支持哪些平台?
Puppet 跨平台运行,可在任意部署了 OpenClaw / Claude Code 的环境中使用(cross-platform)。
谁开发了 Puppet?
由 Vlad Ursul(@gora050)开发并维护,当前版本 v1.0.1。
推荐 Skills