← 返回 Skills 市场
Skill Vetter 1.0.0
作者
fedrov2025
· GitHub ↗
· v1.0.0
· MIT-0
9810
总下载
9
收藏
199
当前安装
1
版本数
在 OpenClaw 中安装
/install skill-vetter-1-0-0
功能描述
Security-first skill vetting for AI agents. Use before installing any skill from ClawdHub, GitHub, or other sources. Checks for red flags, permission scope,...
安全使用建议
Reasonable to install as a security checklist. Before depending on it for final security decisions, verify the publisher/provenance mismatch and only run the example GitHub curl commands against repositories you intentionally want reviewed.
能力评估
Purpose & Capability
The stated purpose is vetting other skills for security, and the artifact content is a Markdown protocol, red-flag checklist, risk rubric, and report template aligned with that purpose.
Instruction Scope
It asks the agent to read all files in the skill being reviewed and form an install recommendation; that is expected for a vetting aid, but its recommendations should remain advisory rather than automatic authority.
Install Mechanism
The package contains only SKILL.md and _meta.json, with hashes matching registry metadata and no executable scripts. The embedded _meta.json owner/slug metadata differs from registry metadata, so provenance should be verified before relying on it as a security tool.
Credentials
The only network commands shown are example curl requests to GitHub URLs selected by the user for reviewing GitHub-hosted skills; no credential use or broad data collection is requested.
Persistence & Privilege
No persistence, background workers, elevated permissions, credential-store access, or privileged filesystem changes are present in the artifacts.
如何使用
- 确保已安装 OpenClaw(本地或 Docker 部署)
- 在对话框中输入安装命令:
/install skill-vetter-1-0-0 - 安装完成后,直接呼叫该 Skill 的名称或使用
/skill-vetter-1-0-0触发 - 根据 Skill 的参数说明提供必要输入,即可获得结构化输出
版本历史
v1.0.0
Initial release of skill-vetter: a security-first vetting protocol for AI agent skills.
- Provides a step-by-step protocol to vet skills before installation, including source check, code review, and permission scope evaluation.
- Lists explicit security “red flags” for immediate rejection.
- Outlines a clear risk classification system with recommended actions.
- Includes a standardized vetting report template for documentation.
- Offers quick vetting commands for GitHub-hosted skills and a trust hierarchy guide.
元数据
常见问题
Skill Vetter 1.0.0 是什么?
Security-first skill vetting for AI agents. Use before installing any skill from ClawdHub, GitHub, or other sources. Checks for red flags, permission scope,... 它是一个面向 Claude Code / OpenClaw 的 AI Agent Skill 插件,目前累计下载 9810 次。
如何安装 Skill Vetter 1.0.0?
在 OpenClaw 或 Claude Code 对话框中运行命令「/install skill-vetter-1-0-0」即可一键安装,无需额外配置。
Skill Vetter 1.0.0 是免费的吗?
是的,Skill Vetter 1.0.0 完全免费,采用 MIT-0 许可证,可自由下载、安装和使用。
Skill Vetter 1.0.0 支持哪些平台?
Skill Vetter 1.0.0 跨平台运行,可在任意部署了 OpenClaw / Claude Code 的环境中使用(cross-platform)。
谁开发了 Skill Vetter 1.0.0?
由 fedrov2025(@fedrov2025)开发并维护,当前版本 v1.0.0。
推荐 Skills