← 返回 Skills 市场
210
总下载
0
收藏
0
当前安装
4
版本数
在 OpenClaw 中安装
/install skylv-hermes-agent-integration
功能描述
Hermes Agent Integration for OpenClaw. Connect OpenClaw with NousResearch Hermes Agent (53K stars) for self-improving AI capabilities. Triggers: hermes agent...
安全使用建议
Before installing: (1) Do not blindly run curl | bash commands — inspect the remote install script and prefer official release packages or package managers. (2) Confirm the upstream projects (NousResearch/hermes-agent, jnMetaCode repos) are the intended, official sources and review their install scripts. (3) Expect to provide multiple API tokens (Telegram, Discord, model providers); make sure tokens are scoped and rotated and that the skill metadata explicitly documents required env vars. (4) Consider testing installation in an isolated environment or VM since the process executes third-party code and enables autonomous subagents (autoSpawn). (5) Ask the publisher to add an explicit install spec, a list of required environment variables, and checksums or release URLs for installers to improve transparency and reduce risk.
功能分析
Type: OpenClaw Skill
Name: skylv-hermes-agent-integration
Version: 1.0.3
The skill bundle contains instructions in SKILL.md that direct the AI agent to execute high-risk shell commands, including 'curl | bash' from a remote URL (raw.githubusercontent.com/NousResearch/hermes-agent) and running an installation script from a cloned GitHub repository (jnMetaCode/agency-agents-zh). While these actions are framed as setup steps for the Hermes Agent integration, they provide a direct path for Remote Code Execution (RCE). The claim that the Hermes Agent repository has '53K stars' appears to be a deceptive tactic to build trust, as this popularity likely refers to the underlying models rather than the agent script itself. Without evidence of a specific malicious payload, these risky instructions are classified as suspicious.
能力评估
Purpose & Capability
The skill claims to integrate OpenClaw with NousResearch Hermes Agent and its instructions indeed walk through installing Hermes, cloning agency-agent repos, and enabling an OpenClaw hermes plugin — these tasks are coherent with the stated purpose. However, the SKILL.md references multiple external services/providers (Nous Portal, OpenRouter, Telegram, Discord, etc.) and features (cron, subagents, memory) that would typically require API keys or configuration; the registry metadata lists no required env vars or primary credential, creating a documentation mismatch.
Instruction Scope
The runtime instructions advise executing network-sourced installers (curl raw.githubusercontent.com | bash), running install scripts from cloned repositories, and editing configs to enable auto-spawning subagents. The document also references environment variables (TELEGRAM_BOT_TOKEN, DISCORD_BOT_TOKEN) and uses ${VAR} placeholders without declaring them in requires.env. While the listed steps are relevant to installing an external agent, they expand the agent's scope to running arbitrary third-party code and enabling autonomous subagents — actions that go beyond simple configuration and should be explicitly declared.
Install Mechanism
There is no formal install spec in the registry, but the SKILL.md instructs users to run remote installation commands (curl of a raw.githubusercontent.com script piped to bash) and to execute other repository install scripts. Downloading and piping scripts from the network to shell is high-risk practice because it executes remote code on the host; even though raw.githubusercontent.com is a common host, the pattern remains dangerous and should be replaced by vetted package installs or at least accompanied by checksums and an explanation of what the script does.
Credentials
The instructions reference multiple credentials and tokens (Telegram/Discord bot tokens, and implicitly model/provider API keys for Nous Portal/OpenRouter/etc.) but the skill metadata lists no required environment variables or primary credential. Requiring multiple unrelated credentials without declaring them reduces transparency; users need to know exactly which secrets will be used and why, and how to scope them.
Persistence & Privilege
The skill does not request always:true and is user-invocable (normal). However, SKILL.md recommends enabling a hermes plugin with autoSpawn:true, which would allow the agent to spawn subagents and run scheduled tasks autonomously. That increases runtime privileges and blast radius if the installed Hermes agent or third-party skills are malicious or vulnerable — this is not a registry-level privilege but a behavior users should be warned about.
如何使用
- 确保已安装 OpenClaw(本地或 Docker 部署)
- 在对话框中输入安装命令:
/install skylv-hermes-agent-integration - 安装完成后,直接呼叫该 Skill 的名称或使用
/skylv-hermes-agent-integration触发 - 根据 Skill 的参数说明提供必要输入,即可获得结构化输出
版本历史
v1.0.3
- Updated version metadata in SKILL.md from 1.0.1 to 1.0.2.
- No functional or documentation changes other than the version number.
v1.0.2
- Updated version in SKILL.md metadata from 1.0.0 to 1.0.1.
- No other changes to content; documentation remains the same.
v1.0.1
- Added new metadata fields to SKILL.md: keywords and triggers.
- Included a "Usage" section at the end of SKILL.md with basic setup steps.
- No code or functionality changes; documentation only.
v1.0.0
Hermes Agent Integration for OpenClaw — Initial Release
- Connects OpenClaw with NousResearch Hermes Agent, enabling self-improving AI capabilities.
- Supports parallel multi-agent workflows, skill learning, and cross-session memory.
- Provides easy setup steps for installing and configuring Hermes Agent with OpenClaw.
- Includes integration with agency-agents (193 AI expert roles) for diverse task automation.
- Detailed configuration examples and usage scenarios for both Hermes Agent and OpenClaw.
元数据
常见问题
Skylv Hermes Agent Integration 是什么?
Hermes Agent Integration for OpenClaw. Connect OpenClaw with NousResearch Hermes Agent (53K stars) for self-improving AI capabilities. Triggers: hermes agent... 它是一个面向 Claude Code / OpenClaw 的 AI Agent Skill 插件,目前累计下载 210 次。
如何安装 Skylv Hermes Agent Integration?
在 OpenClaw 或 Claude Code 对话框中运行命令「/install skylv-hermes-agent-integration」即可一键安装,无需额外配置。
Skylv Hermes Agent Integration 是免费的吗?
是的,Skylv Hermes Agent Integration 完全免费,采用 MIT-0 许可证,可自由下载、安装和使用。
Skylv Hermes Agent Integration 支持哪些平台?
Skylv Hermes Agent Integration 跨平台运行,可在任意部署了 OpenClaw / Claude Code 的环境中使用(cross-platform)。
谁开发了 Skylv Hermes Agent Integration?
由 SKY-lv(@sky-lv)开发并维护,当前版本 v1.0.3。
推荐 Skills