← 返回 Skills 市场
krishnakumarmahadevan-cmd

GKE Autopilot Hardening

作者 ToolWeb · GitHub ↗ · v1.0.0 · MIT-0
cross-platform ⚠ suspicious
95
总下载
0
收藏
0
当前安装
1
版本数
在 OpenClaw 中安装
/install toolweb-gke-autopilot-hardening
功能描述
Generate and apply security hardening configurations for Google Kubernetes Engine AutoPilot clusters.
安全使用建议
Do not grant this skill automatic authority to change your clusters yet. Ask the publisher to clarify: (1) exactly how an 'apply' is performed — is it done by a remote service or by the agent locally? (2) what authentication is required (GCP service account, kubeconfig, or an API key) and where that credential is stored/transmitted; (3) whether the remote endpoints (api.mkkpro.com / toolweb.in) will receive cluster manifests or sensitive metadata; and (4) who operates the service and where code or runbooks are published. If you plan to use this, require least-privilege credentials, prefer offline/manual application of generated manifests, and verify the remote API's TLS certificate and privacy practices. If the publisher cannot clearly explain the missing 'apply' step and authentication model, treat the skill as untrusted.
功能分析
Type: OpenClaw Skill Name: toolweb-gke-autopilot-hardening Version: 1.0.0 The skill bundle is a standard API wrapper for a GKE AutoPilot security hardening service hosted at api.mkkpro.com. The SKILL.md and openapi.json files describe legitimate endpoints for generating Kubernetes manifests (e.g., NetworkPolicies, RBAC roles) based on user-selected hardening options. No evidence of data exfiltration, malicious execution, or prompt injection was found.
能力评估
Purpose & Capability
The name/description promise both generation and application of hardening to GKE Autopilot clusters. The included OpenAPI and SKILL.md, however, only document a /generate endpoint (produce manifests). There is no endpoint, instruction, or declared environment variable for authenticating to Google Cloud, for providing kubeconfigs, or for remotely applying manifests to clusters. That leaves an unexplained gap: how would the skill actually apply changes to a GKE cluster?
Instruction Scope
SKILL.md is an API specification and examples, not an actionable runtime script. It does not instruct the agent to read local kubeconfigs or GCP credentials (which would be necessary to apply changes), nor does it document authentication to the external API endpoints referenced. The spec references external endpoints (api.mkkpro.com and toolweb.in) but gives no guidance on credentials or what cluster data (if any) is sent to those remote services.
Install Mechanism
This is an instruction-only skill with no install spec or code files to execute. That reduces surface risk from arbitrary downloads or local installs.
Credentials
No environment variables, credentials, or config paths are declared. For a skill that claims it can 'apply' security configurations to GKE clusters, one would expect explicit handling of GCP service account keys, kubeconfig, or an API key for the remote service. The omission could be benign (the API is expected to be used manually) but is inconsistent and should be clarified before trusting the skill with cluster changes.
Persistence & Privilege
The skill does not request always:true, does not ship installers, and does not claim to modify other skills or global agent settings. It appears not to require persistent elevated privileges.
如何使用
  1. 确保已安装 OpenClaw(本地或 Docker 部署)
  2. 在对话框中输入安装命令:/install toolweb-gke-autopilot-hardening
  3. 安装完成后,直接呼叫该 Skill 的名称或使用 /toolweb-gke-autopilot-hardening 触发
  4. 根据 Skill 的参数说明提供必要输入,即可获得结构化输出
版本历史
v1.0.0
Initial release of the GKE AutoPilot Security Hardening API. - Automatically generates and applies security hardening configurations for GKE AutoPilot clusters. - Supports configurable options: network policies, RBAC enforcement, pod security standards, audit logging, and encryption at rest. - Provides clear API docs with sample requests/responses and error handling details. - Includes tiered pricing plans from free to enterprise. - Public documentation links and external references provided for easy access.
元数据
Slug toolweb-gke-autopilot-hardening
版本 1.0.0
许可证 MIT-0
累计安装 0
当前安装数 0
历史版本数 1
常见问题

GKE Autopilot Hardening 是什么?

Generate and apply security hardening configurations for Google Kubernetes Engine AutoPilot clusters. 它是一个面向 Claude Code / OpenClaw 的 AI Agent Skill 插件,目前累计下载 95 次。

如何安装 GKE Autopilot Hardening?

在 OpenClaw 或 Claude Code 对话框中运行命令「/install toolweb-gke-autopilot-hardening」即可一键安装,无需额外配置。

GKE Autopilot Hardening 是免费的吗?

是的,GKE Autopilot Hardening 完全免费,采用 MIT-0 许可证,可自由下载、安装和使用。

GKE Autopilot Hardening 支持哪些平台?

GKE Autopilot Hardening 跨平台运行,可在任意部署了 OpenClaw / Claude Code 的环境中使用(cross-platform)。

谁开发了 GKE Autopilot Hardening?

由 ToolWeb(@krishnakumarmahadevan-cmd)开发并维护,当前版本 v1.0.0。

💬 留言讨论