← 返回 Skills 市场
krishnakumarmahadevan-cmd

IR Playbook Generator

作者 ToolWeb · GitHub ↗ · v1.0.0 · MIT-0
cross-platform ⚠ suspicious
107
总下载
0
收藏
0
当前安装
1
版本数
在 OpenClaw 中安装
/install toolweb-ir-playbook-generator
功能描述
Generates customized incident response playbooks tailored to organizational assessment data and security requirements.
安全使用建议
This skill appears to do what it says (generate incident response playbooks) and does not request credentials or install code, but it lacks an author, homepage, and any server/hosting information in its OpenAPI spec. Before using it with real data, ask the publisher: (1) Where will the assessmentData be sent/executed? (server base URL and hosting/ownership); (2) Is data retained or logged, and for how long? (retention and access controls); (3) Is processing done locally or on a third-party service, and is it encrypted in transit and at rest? If you cannot confirm these, avoid sending real production or PII-containing assessmentData—test with synthetic/dummy inputs only. If you need this functionality but must keep data in-house, prefer a vetted tool with clear hosting or a local/offline implementation.
功能分析
Type: OpenClaw Skill Name: toolweb-ir-playbook-generator Version: 1.0.0 The skill bundle defines a legitimate interface for an Incident Response Playbook Generator API hosted at api.mkkpro.com. The documentation (SKILL.md) and API schema (openapi.json) describe a tool that transforms organizational assessment data into structured security playbooks. There is no evidence of malicious intent, prompt injection, or unauthorized data exfiltration; the data requested is necessary for the stated functionality, and no suspicious execution patterns or obfuscation are present.
能力评估
Purpose & Capability
The name/description (IR Playbook Generator) match the included OpenAPI schema and SKILL.md examples. The skill does not request unrelated binaries or credentials, which is proportionate to a document-generation tool. However, the skill is an instruction-only bundle with no declared backend server URL or author/homepage, so it's unclear how/where the API would actually run.
Instruction Scope
SKILL.md defines input data (assessmentData, sessionId, userId, timestamp) and sample responses but does not state the endpoint base URL, authentication, or where requests are transmitted. That omission creates a risk: an agent using this spec might send sensitive organizational assessment data to an unknown remote endpoint or to a platform-mapped host without explicit user consent. The instructions are otherwise limited to generating playbooks and do not explicitly instruct reading local files or environment variables.
Install Mechanism
No install spec and no code files are present (instruction-only). This minimizes on-disk execution risk; nothing is downloaded or installed by the skill itself.
Credentials
The skill declares no required environment variables or credentials, which is proportionate. However, the API expects structured assessmentData that may contain sensitive or regulated information (PII, system inventories, compliance status). Because the skill provides no provenance or data-handling policy, there's a potential for sensitive data to be transmitted outside the organization without declared safeguards.
Persistence & Privilege
The skill does not request persistent presence (always:false) and does not appear to alter other skills or system configurations. It does not request elevated privileges.
如何使用
  1. 确保已安装 OpenClaw(本地或 Docker 部署)
  2. 在对话框中输入安装命令:/install toolweb-ir-playbook-generator
  3. 安装完成后,直接呼叫该 Skill 的名称或使用 /toolweb-ir-playbook-generator 触发
  4. 根据 Skill 的参数说明提供必要输入,即可获得结构化输出
版本历史
v1.0.0
Initial release of the Incident Response Playbook Generator API. - Automates creation of customized incident response playbooks based on organizational assessment data. - Generates documentation with executive summaries, response phases, team roles, communication templates, escalation procedures, legal considerations, and contact lists. - Supports security teams in aligning playbooks with relevant compliance frameworks and threat landscapes. - Features a POST endpoint for generating playbooks using structured input data. - Designed for use by SOCs, incident response teams, compliance officers, and security architects.
元数据
Slug toolweb-ir-playbook-generator
版本 1.0.0
许可证 MIT-0
累计安装 0
当前安装数 0
历史版本数 1
常见问题

IR Playbook Generator 是什么?

Generates customized incident response playbooks tailored to organizational assessment data and security requirements. 它是一个面向 Claude Code / OpenClaw 的 AI Agent Skill 插件,目前累计下载 107 次。

如何安装 IR Playbook Generator?

在 OpenClaw 或 Claude Code 对话框中运行命令「/install toolweb-ir-playbook-generator」即可一键安装,无需额外配置。

IR Playbook Generator 是免费的吗?

是的,IR Playbook Generator 完全免费,采用 MIT-0 许可证,可自由下载、安装和使用。

IR Playbook Generator 支持哪些平台?

IR Playbook Generator 跨平台运行,可在任意部署了 OpenClaw / Claude Code 的环境中使用(cross-platform)。

谁开发了 IR Playbook Generator?

由 ToolWeb(@krishnakumarmahadevan-cmd)开发并维护,当前版本 v1.0.0。

💬 留言讨论