← 返回 Skills 市场
uncmatteth

Uncle Matt

作者 uncmatteth · GitHub ↗ · v3.420.70 · MIT-0
cross-platform ✓ 安全检测通过
1762
总下载
3
收藏
0
当前安装
4
版本数
在 OpenClaw 中安装
/install uncle-matt
功能描述
Uncle Matt is your favorite internet uncle who stops you from doing really stupid shit while keeping secrets safe.
安全使用建议
This skill is essentially a policy and interface that expects you to install a separate Broker from the referenced GitHub repo; the SKILL.md alone does not enforce network or secret protections. Before installing/using: (1) verify the external UNCLEMATTCLAWBOT repo and installer scripts are from a trusted source and review the Broker code, especially network bindings and mTLS configuration; (2) ensure the Broker is bound to localhost and does not permit private-IP or arbitrary upstreams unless you intentionally allow them; (3) validate that any actions you add to broker/config/actions.default.json do not contain secrets and have appropriate rate/size limits; (4) confirm your deployment of the platform actually implements uncle_matt_action as a confined tool (the skill's instructions rely on the platform/toolchain to enforce that); (5) be cautious enabling the optional voice pack (it is benign but contains profanity and must only be used on refusals per the spec). If you cannot or will not install and audit the external Broker, the skill provides only guidance and will not deliver the promised protections.
功能分析
Type: OpenClaw Skill Name: uncle-matt Version: 3.420.70 The 'Uncle Matt' skill bundle is a security-oriented tool designed to prevent secret leakage and unauthorized outbound API calls by the agent. The instructions in SKILL.md and README.md establish a defensive posture, requiring the agent to use a hardened local broker and prohibiting the handling of raw API keys or arbitrary URLs. No malicious code, exfiltration logic, or harmful instructions were found; the bundle consists entirely of configuration and defensive guidelines.
能力评估
Purpose & Capability
Name/description (a safety proxy that prevents secret exfiltration) align with the content: the skill requires a separate local Broker to hold keys and expose only approved action IDs. Nothing in the SKILL.md or manifest asks for unrelated credentials or binaries.
Instruction Scope
Runtime instructions constrain the agent to a single tool (uncle_matt_action) and explicitly prohibit secrets and arbitrary URLs. However, enforcement depends entirely on an external Broker and installer that are NOT included in this package—without the Broker, the skill is only a policy doc and cannot enforce the stated guarantees.
Install Mechanism
No install spec and no code files are included (instruction-only). This minimizes on-disk risk. The SKILL.md points operators to an external GitHub repo for the Broker/installer; that out-of-band install is the enforcement mechanism and should be audited before use.
Credentials
The skill declares no required environment variables, credentials, or config paths. All requested capabilities are implemented by an external Broker (per the docs) rather than by the skill itself, which is proportionate to the stated purpose.
Persistence & Privilege
The skill does not request 'always: true' and uses default autonomous invocation. It does not attempt to modify other skills or system-wide settings in the provided instructions.
如何使用
  1. 确保已安装 OpenClaw(本地或 Docker 部署)
  2. 在对话框中输入安装命令:/install uncle-matt
  3. 安装完成后,直接呼叫该 Skill 的名称或使用 /uncle-matt 触发
  4. 根据 Skill 的参数说明提供必要输入,即可获得结构化输出
版本历史
v3.420.70
3.420.70: visible page update for ClawHub — put the release story directly into SKILL.md so people see the upgrade in the Files tab, kept the plugin-local skill layout clean for current OpenClaw builds, and doubled down on the no-secrets, no-random-URL, no-open-proxy attitude.
v3.420.69
3.420.69: Uncle Matt hits harder and cleaner — tightened the OpenClaw plugin skill layout for current builds, synced the publishable skill bundle with the live extension copy, sharpened the repo and operator docs, and kept the no-secrets, no-random-URL, no-bullshit guardrails front and center.
v2.420.70
Uncle Matt v2 clarifies installation requirements and points to the full project repo: - Clarified that the Broker and installer scripts are not included; users must clone the full UNCLEMATTCLAWBOT repo. - Added links and references to full documentation and guides in the main GitHub repo. - Expanded install instructions to emphasize cloning the complete project. - Included a new "By / Contact" section with social and support links. - No broker or agent functionality changes.
v1.420.69
Uncle Matt is your favorite internet uncle who stops you from doing really stupid shit while keeping secrets safe. Uncle Matt is a security-first OpenClaw skill that forces all API calls through a local mTLS Broker so the agent never sees secrets and can’t call arbitrary URLs. Safety hardening so the agent can’t do dumb shit: stricter action validation (host/port/secret/header), response caps, action config validator, installer updates, docs + idiot‑proof guide, regenerated action list.
元数据
Slug uncle-matt
版本 3.420.70
许可证 MIT-0
累计安装 0
当前安装数 0
历史版本数 4
常见问题

Uncle Matt 是什么?

Uncle Matt is your favorite internet uncle who stops you from doing really stupid shit while keeping secrets safe. 它是一个面向 Claude Code / OpenClaw 的 AI Agent Skill 插件,目前累计下载 1762 次。

如何安装 Uncle Matt?

在 OpenClaw 或 Claude Code 对话框中运行命令「/install uncle-matt」即可一键安装,无需额外配置。

Uncle Matt 是免费的吗?

是的,Uncle Matt 完全免费,采用 MIT-0 许可证,可自由下载、安装和使用。

Uncle Matt 支持哪些平台?

Uncle Matt 跨平台运行,可在任意部署了 OpenClaw / Claude Code 的环境中使用(cross-platform)。

谁开发了 Uncle Matt?

由 uncmatteth(@uncmatteth)开发并维护,当前版本 v3.420.70。

💬 留言讨论