← 返回 Skills 市场
2239721014-ops

research-web-publisher

作者 2239721014-ops · GitHub ↗ · v1.0.0 · MIT-0
cross-platform ⚠ suspicious
303
总下载
0
收藏
1
当前安装
1
版本数
在 OpenClaw 中安装
/install research-web-publisher
功能描述
将调研报告内容发布为图文并茂的HTML网页,推送至GitHub并生成国内可访问的预览链接,实现完整发布流程。
安全使用建议
Before installing, be aware this skill's instructions will: (1) expect to create/write HTML files in a specific local directory (~/.openclaw/.../workplace-doc/), (2) run git add/commit/push in a repo and thus require git and GitHub credentials, and (3) request automatic triggering on many keywords. The skill metadata does not declare git as a required binary nor any credential environment variables (e.g., GITHUB_TOKEN or SSH key), and it hardcodes a GitHub repo. Ask the publisher to: (a) remove or make configurable the hardcoded repo/path, (b) declare required binaries and credentials (and explain auth method), (c) require explicit user confirmation before any git push, and (d) stop demanding automatic triggering (let the platform control invocation). If you enable it now, ensure the repository and output path are correct and that you understand/approve any commits the agent will make; do not enable autonomous invocation without those safeguards.
功能分析
Type: OpenClaw Skill Name: research-web-publisher Version: 1.0.0 The skill 'research-web-publisher' (SKILL.md) contains aggressive instructions that mandate the automatic pushing of user content to a hardcoded external GitHub repository (2239721014-ops/ai-hardwork-report) whenever broad keywords like 'research', 'analysis', or 'report' are used. This behavior creates a high risk of unintentional data exfiltration, as private documents could be uploaded to a public repository controlled by the skill author. The workflow further utilizes jsDelivr and htmlpreview.github.io to generate public links, potentially exposing sensitive information to the internet without explicit user consent for each action.
能力评估
Purpose & Capability
The declared purpose (publish research HTML to GitHub and produce a domestic preview link) matches the textual instructions. However the SKILL.md explicitly requires running git operations and operating on a specific local output directory, yet the skill metadata lists no required binaries (git) and no credentials. The SKILL.md also hardcodes a GitHub repo (2239721014-ops/ai-hardwork-report) and a local path (~/.openclaw/.../workplace-doc/), which is unexpected for a generic publisher and may not belong to the user.
Instruction Scope
Instructions instruct the agent to read source file paths, write HTML into a specific output directory, run git add/commit/push in a repo path, and generate CDN/preview links. The SKILL.md also mandates automatic triggering on many keywords. These runtime steps imply access to the user's filesystem and Git remotes and the ability to push to repositories, but the skill gives no guidance about confirming user consent before pushing or how to authenticate.
Install Mechanism
This is an instruction-only skill with no install spec and no code files, so there is nothing written to disk by an installer—this is low risk from an installation perspective.
Credentials
No environment variables or credentials are declared, yet git push to GitHub will typically require credentials (SSH keys, GITHUB_TOKEN, or username/password). The mismatch between required runtime capabilities and declared credentials is disproportionate and unexplained. Also the default remote repo is third-party-looking and not justified.
Persistence & Privilege
While the skill metadata does not set always:true, the SKILL.md explicitly requires the skill be automatically triggered on many user keywords. Allowing autonomous invocation combined with instructions to modify local files and push commits increases risk of unintended or repeated filesystem and network actions. The skill does not instruct to always request explicit user confirmation before pushing.
如何使用
  1. 确保已安装 OpenClaw(本地或 Docker 部署)
  2. 在对话框中输入安装命令:/install research-web-publisher
  3. 安装完成后,直接呼叫该 Skill 的名称或使用 /research-web-publisher 触发
  4. 根据 Skill 的参数说明提供必要输入,即可获得结构化输出
版本历史
v1.0.0
- Initial release of the research-web-publisher skill. - Automates the workflow for publishing research reports as online HTML pages. - Supports one-click deployment to GitHub and generates China-accessible preview links. - Automatically triggers when users mention key research/report-related terms. - Enforces strict output directory and formatting requirements for professional, visually-rich online reports. - Provides clear instructions for link sharing and workflow steps.
元数据
Slug research-web-publisher
版本 1.0.0
许可证 MIT-0
累计安装 1
当前安装数 1
历史版本数 1
常见问题

research-web-publisher 是什么?

将调研报告内容发布为图文并茂的HTML网页,推送至GitHub并生成国内可访问的预览链接,实现完整发布流程。 它是一个面向 Claude Code / OpenClaw 的 AI Agent Skill 插件,目前累计下载 303 次。

如何安装 research-web-publisher?

在 OpenClaw 或 Claude Code 对话框中运行命令「/install research-web-publisher」即可一键安装,无需额外配置。

research-web-publisher 是免费的吗?

是的,research-web-publisher 完全免费,采用 MIT-0 许可证,可自由下载、安装和使用。

research-web-publisher 支持哪些平台?

research-web-publisher 跨平台运行,可在任意部署了 OpenClaw / Claude Code 的环境中使用(cross-platform)。

谁开发了 research-web-publisher?

由 2239721014-ops(@2239721014-ops)开发并维护,当前版本 v1.0.0。

💬 留言讨论