安全扫描
OpenClaw
安全
high confidenceThe skill's requirements and instructions align with its stated purpose of summarizing public Qianwen product pages; it doesn't request credentials or install anything and stays within expected scope.
评估建议
This skill appears coherent and limited to scraping and summarizing public Qianwen documentation. Before installing, confirm your agent's browsing/scraping capability (some agents need a headless browser to handle dynamic pages). Be aware of site crawling rules and rate limits; if you are concerned about network activity, restrict autonomous invocation or monitor outbound requests. Because the skill is instruction-only, its behavior depends on the agent's web access — ensure that the agent will ...详细分析 ▾
✓ 用途与能力
Name/description (summarize public Alibaba Qianwen pages) matches the SKILL.md: only public product/docs pages are referenced and no unrelated credentials, binaries, or config paths are requested.
ℹ 指令范围
SKILL.md confines actions to visiting and extracting public pages, respecting rate limits and avoiding account/API operations. It does note that pages are dynamically loaded and need waiting; this implies the agent must have web-browsing/rendering capability (headless browser or page renderer), which is not declared but is a reasonable operational requirement rather than a security red flag.
✓ 安装机制
No install spec and no code files — instruction-only skill. Nothing is written to disk or fetched at install time.
✓ 凭证需求
No environment variables, credentials, or config paths are requested. The declared scope (public pages only) justifies the lack of secrets.
✓ 持久化与权限
always is false (no forced persistent presence) and the skill does not request special privileges or modifications to other skills or system settings.
安全有层次,运行前请审查代码。
运行时依赖
无特殊依赖
版本
latestv0.1.02026/3/18
- Initial release of the qianwen-hot-trend skill for organizing public information related to Alibaba's Qianwen AI models. - Supports summarizing product features, pricing, quotas, and documentation from public pages only. - No account operations, API calls, or privileged access; handles only lightweight public data aggregation. - Provides key entry points and common tasks for model info and document aggregation. - Includes compliance reminders for data security and platform rules.
● 无害
安装命令 点击复制
官方npx clawhub@latest install qianwen
镜像加速npx clawhub@latest install qianwen --registry https://cn.clawhub-mirror.com
技能文档
用途与边界
- 面向公开产品页与文档中心的检索与内容摘要
- 不提供账号操作、接口调用或权限绕过能力
- 仅处理公开页面的轻量信息整理
关键入口
- 主页:https://qianwen.aliyun.com/
- 文档中心:https://help.aliyun.com/
- 控制台与定价:阿里云公开入口
常见任务
- 模型能力与版本说明摘要(上下文长度、功能特性)
- 定价与调用配额说明提取(公开信息)
- 文档目录与示例链接汇总
数据字段
- 模型名称、版本、上下文长度、功能特性、链接
- 定价页链接、免费额度说明、地域与服务状态
- 文档标题、目录链接、示例入口
自动化要点
- 页面动态加载,需等待完成后解析
- 不进行API调用或账号相关操作
- 频率控制,尊重平台访问限制
示例流程
- 能力摘要:访问模型页 → 抽取版本与特性 → 输出摘要
- 定价整理:访问定价入口 → 提取费用与额度 → 输出清单
- 文档汇总:进入文档中心 → 抽取目录与示例 → 输出链接集合
合规提示
- 遵守平台规则与账号安全要求
- 不存储或输出敏感信息
数据来源:ClawHub ↗ · 中文优化:龙虾技能库
OpenClaw 技能定制 / 插件定制 / 私有工作流定制
免费技能或插件可能存在安全风险,如需更匹配、更安全的方案,建议联系付费定制