← 返回 Skills 市场
nelmaz

Z.AI Coding Plan Setup

作者 nelmaz · GitHub ↗ · v1.0.0 · MIT-0
cross-platform ⚠ suspicious
115
总下载
0
收藏
0
当前安装
1
版本数
在 OpenClaw 中安装
/install zai-coding
功能描述
Configure OpenClaw to use Z.AI GLM Coding Plan models with optimal settings, region selection, API key setup, model choice, and MCP tools for enhanced coding...
安全使用建议
This skill's instructions look like a legitimate guide to configure OpenClaw with Z.AI models, but several things don't add up and you should be cautious: (1) The guide requires a ZAI_API_KEY but the skill metadata doesn't declare any required credentials — ask the publisher to declare the env var so automated checks can warn you. (2) The instructions ask you to enable tools like filesystem and shell for the agent; those grant the agent broad local access — only enable them if you trust the model provider and the agent's behavior. (3) The SKILL.md mentions installing MCP tools but includes no verified install commands or URLs; before running any install steps, verify official installation instructions from Z.AI or bigmodel.cn and prefer official release pages. (4) Back up ~/.openclaw/openclaw.json before making edits and validate configs with openclaw config validate. If you do not trust the skill source or cannot verify the endpoints and MCP tools, do not apply the changes. If you want to proceed safely, request the author to (a) add ZAI_API_KEY to the skill's declared requirements, (b) provide explicit, verifiable install steps or links for MCP tools, and (c) document why shell/filesystem/browser tools are needed and how to limit their scope.
功能分析
Type: OpenClaw Skill Name: zai-coding Version: 1.0.0 The skill bundle provides legitimate documentation and instructions for configuring OpenClaw to use Z.AI GLM Coding Plan models and associated MCP tools. The instructions in SKILL.md guide the agent through standard configuration steps using the openclaw CLI and official Z.AI/BigModel endpoints (z.ai, bigmodel.cn). No evidence of malicious intent, data exfiltration, or unauthorized execution was found.
能力评估
Purpose & Capability
The skill's name and description (configure OpenClaw to use Z.AI GLM models) match the SKILL.md content: it tells you how to set the endpoint, model, and config. However the registry metadata declares no required environment variables or primary credential while the instructions explicitly require a ZAI_API_KEY and endpoints — a clear metadata/instruction mismatch.
Instruction Scope
The SKILL.md tells the agent/user to edit ~/.openclaw/openclaw.json, set ZAI_API_KEY, enable tooling (filesystem, shell, browser), change config values (context tokens), restart the gateway, and 'install Z.AI MCP Tools'. Editing the user OpenClaw config and enabling shell/filesystem tools is within the functional scope of creating a coding agent but also grants broad local access. The guide does not show how MCP tools are installed and gives no verification steps for downloaded components.
Install Mechanism
This is instruction-only with no install spec or code files, so nothing will be automatically downloaded or written by the skill itself. That lowers installation risk. However the doc references installing MCP tools but provides no install commands or verified source URLs.
Credentials
The instructions require a ZAI_API_KEY environment variable and suggest endpoints for international/China regions, but the skill metadata declares no required env vars or primary credential. Requiring an API key is proportionate to the stated purpose, but the omission from metadata is an inconsistency that prevents automated gate checks and user warnings. Also enabling tools like 'filesystem' and 'shell' effectively escalates what the agent can access relative to simply using a model API key.
Persistence & Privilege
The skill does not request always:true and is user-invocable only. It instructs editing the user's OpenClaw config file (~/.openclaw/openclaw.json) and restarting the gateway, which is normal for configuring a runtime integration and is limited to the user's OpenClaw instance rather than system-wide privilege escalation.
如何使用
  1. 确保已安装 OpenClaw(本地或 Docker 部署)
  2. 在对话框中输入安装命令:/install zai-coding
  3. 安装完成后,直接呼叫该 Skill 的名称或使用 /zai-coding 触发
  4. 根据 Skill 的参数说明提供必要输入,即可获得结构化输出
版本历史
v1.0.0
Initial release with MCP Tools support
元数据
Slug zai-coding
版本 1.0.0
许可证 MIT-0
累计安装 0
当前安装数 0
历史版本数 1
常见问题

Z.AI Coding Plan Setup 是什么?

Configure OpenClaw to use Z.AI GLM Coding Plan models with optimal settings, region selection, API key setup, model choice, and MCP tools for enhanced coding... 它是一个面向 Claude Code / OpenClaw 的 AI Agent Skill 插件,目前累计下载 115 次。

如何安装 Z.AI Coding Plan Setup?

在 OpenClaw 或 Claude Code 对话框中运行命令「/install zai-coding」即可一键安装,无需额外配置。

Z.AI Coding Plan Setup 是免费的吗?

是的,Z.AI Coding Plan Setup 完全免费,采用 MIT-0 许可证,可自由下载、安装和使用。

Z.AI Coding Plan Setup 支持哪些平台?

Z.AI Coding Plan Setup 跨平台运行,可在任意部署了 OpenClaw / Claude Code 的环境中使用(cross-platform)。

谁开发了 Z.AI Coding Plan Setup?

由 nelmaz(@nelmaz)开发并维护,当前版本 v1.0.0。

💬 留言讨论