📦 Auto Improver Pro — 自进化AI

v1.0.1

每次运行都收集反馈并自我优化的AI技能,17分钟自主循环持续升级,越用越聪明。

0· 130·1 当前·1 累计
下载技能包
最后更新
2026/4/13
0
安全扫描
VirusTotal
可疑
查看报告
OpenClaw
可疑
medium confidence
NULL
评估建议
This package is internally inconsistent: it promises a CLI that auto-collects and optimizes other skills but ships no code or install instructions and declares no permissions or storage locations. Before installing, ask the publisher for: (1) the source code or a link to a repository/release, (2) exact install artifacts (binary or package) and how 'clawhub install' obtains them, (3) what data is read (which files, APIs, or logs), where data is stored, and how encryption/desensitization is implem...
详细分析 ▾
用途与能力
The skill claims to collect execution data from other skills, extract patterns, and 'auto-execute' optimizations, but requests no environment variables, config paths, or binaries and provides no code or install steps that would grant it access to other skills' logs or telemetry. The listed dependency 'skill-evolver' is not supplied. This mismatch (claims vs. required/available artifacts) is unexplained.
指令范围
SKILL.md instructs running a 'self-improving-skill' CLI (start, analyze-feedback, status, instincts list) and references local encryption and data collection, yet the package contains no binary or scripts and gives no guidance about where and how to collect other skills' execution data. The instructions implicitly assume access to other skills' runtime data without specifying files, APIs, or permissions.
安装机制
There is no install specification (instruction-only skill) and no code files despite package.json referencing src/index.js. The README and SKILL.md mention 'clawhub install' and 'clawhub' metadata, but no install artifact is present. This is inconsistent and suggests the published bundle is incomplete or intentionally missing implementation details.
凭证需求
No environment variables, credentials, or config paths are declared, yet the skill claims to collect potentially sensitive execution/feedback data and to perform local encryption and desensitization. The lack of declared required permissions or storage locations is disproportionate to the described data collection and makes it unclear how data access or storage would be secured.
持久化与权限
always is false (no forced-permanence). Model invocation is allowed (the platform default), so the skill could be invoked autonomously if enabled by the agent. That normal capability combined with unclear data-access mechanisms increases risk, but there is no evidence the skill demands persistent platform-wide privileges or alters other skills' configs.
安全有层次,运行前请审查代码。

运行时依赖

无特殊依赖

版本

latestv1.0.12026/4/1

NULL

可疑

安装命令

点击复制
官方npx clawhub@latest install auto-improver-pro
镜像加速npx clawhub@latest install auto-improver-pro --registry https://cn.longxiaskill.com
数据来源ClawHub ↗ · 中文优化:龙虾技能库