📦 Firm Spec Compliance Pack — 规范合规审计
v1.0.0一键审计 MCP 2025-11-25 规范,自动校验提示、任务、资源、音频、JSON Schema 2020-12、SSE 传输等合规项,输出详细报告。
0· 311·1 当前·1 累计
下载技能包
最后更新
2026/3/2
安全扫描
OpenClaw
安全
high confidenceNULL
评估建议
This SKILL.md is instruction-only and aligns with an MCP compliance audit pack. Before installing: 1) Verify and obtain the mcp-openclaw-extensions >= 3.0.0 from a trusted source (the skill gives no homepage or installer). 2) Inspect the extension's code/packaging so you know what those openclaw_* audit commands do and whether they install additional software. 3) When running the audits, point config_path to non-sensitive test or exported copies of your config — don't use paths containing secret...详细分析 ▾
✓ 用途与能力
The SKILL.md describes an MCP protocol compliance audit pack and declares a dependency on mcp-openclaw-extensions >= 3.0.0; the listed CLI-style tools and config_path usage are coherent with an auditing toolset.
ℹ 指令范围
Instructions are limited to running audit tools against a user-specified config_path and adding the skill to the agent config. This is appropriate for a compliance pack, but the runtime will read whatever file you point to — do not point it at system or secret-containing config files without review.
✓ 安装机制
No install spec or code files are included (instruction-only), which reduces risk. However the declared dependency (mcp-openclaw-extensions >= 3.0.0) implies external tooling will be required; the skill provides no source or install instructions for that dependency, so verify where you obtain it.
✓ 凭证需求
The skill requests no environment variables, credentials, or config paths itself. The only resource it references is a user-supplied config_path for audits, which is proportionate to its purpose. Be aware the required extension may itself request credentials or env vars.
✓ 持久化与权限
always:false and default autonomous invocation are in place; the skill does not request elevated or persistent privileges or modify other skills. No indications it would persist beyond normal skill inclusion.
安全有层次,运行前请审查代码。
运行时依赖
无特殊依赖
版本
latestv1.0.02026/3/2
NULL
● 无害
安装命令
点击复制官方npx clawhub@latest install firm-spec-compliance-pack
镜像加速npx clawhub@latest install firm-spec-compliance-pack --registry https://cn.longxiaskill.com