📦 Kubernetes Network Policy Generator — 网络策略生成器

v1.0.0

基于 YAML 模板快速生成 Kubernetes NetworkPolicy,支持标签选择器、端口规则、命名空间隔离,一键导出并可直接 kubectl apply。

0· 160·0 当前·0 累计
下载技能包
最后更新
2026/4/22
0
安全扫描
VirusTotal
可疑
查看报告
OpenClaw
可疑
high confidence
The skill's runtime instructions and required API key align with a privacy-scorecard service, but the package name/slug (Kubernetes Network Policy Generator / k8s-network-policy-generator) contradicts the described purpose — this mismatch is a strong incoherence that merits caution.
评估建议
Do not install this skill until you resolve the naming mismatch. The SKILL.md and README clearly implement a privacy-scorecard that posts data to portal.toolweb.in and requires TOOLWEB_API_KEY, but the package name/slug suggests an unrelated Kubernetes tool. This could be a benign packaging mistake or an attempt to hide purpose. Before installing: 1) Verify the publisher and homepage (portal.toolweb.in) independently (company identity, TLS cert, contact info, privacy policy). 2) Confirm why the ...
详细分析 ▾
用途与能力
The skill package is named and sluggified as a Kubernetes Network Policy Generator, but the SKILL.md, README, API endpoint, required env var (TOOLWEB_API_KEY), and workflow are all about a privacy solution/vendor scorecard. This naming/content mismatch is unexplained and suspicious: either a packaging error or intentional mislabeling. Other declared requirements (curl and TOOLWEB_API_KEY) are consistent with the scorecard functionality, but the name/slug inconsistency is a major red flag.
指令范围
The instructions are explicit: gather organization and vendor inputs and POST them to https://portal.toolweb.in/apis/compliance/privacy-scorecard using X-API-Key. They do not instruct reading local files, other environment variables, or system config. Note: the skill will transmit user-provided organizational and vendor details (potentially sensitive) to a third-party endpoint — users should be aware that that data leaves their environment.
安装机制
No install spec or code files are present; this is instruction-only and requires curl on PATH. That is the lowest-risk install mechanism because nothing is written to disk by the skill bundle itself.
凭证需求
Only a single API credential (TOOLWEB_API_KEY) is required and is plausibly needed to call the ToolWeb API shown in the instructions. The requested environment access is minimal and proportionate — however, granting this key authorizes the external service to act on the user's behalf, so trust in the service is required.
持久化与权限
The skill does not request always:true and has no config path requirements. It does not appear to modify other skills or system settings. Model/autonomous invocation is enabled (default) but that's normal and not in itself flagged here.
安全有层次,运行前请审查代码。

运行时依赖

🖥️ OSLinux · macOS · Windows

版本

latestv1.0.02026/3/18

Initial release of the Privacy Solution Scorecard skill. - Evaluate and compare privacy management vendors across 12 weighted criteria, including functionality, compliance, cost, and stability. - Interactive workflow to gather organizational context, priorities, and detailed vendor scores. - Returns detailed scorecards, side-by-side comparison matrix, tailored recommendations, and an executive summary. - Supports comparisons of major vendors (OneTrust, BigID, TrustArc, Securiti, etc.) for RFPs, platform selection, or business cases. - Requires TOOLWEB_API_KEY and curl; outputs follow a clear board-ready report template. - Built by a CISSP/CISM certified security professional; integrates with https://portal.toolweb.in

可疑

安装命令

点击复制
官方npx clawhub@latest install k8s-network-policy-generator
镜像加速npx clawhub@latest install k8s-network-policy-generator --registry https://cn.longxiaskill.com
数据来源ClawHub ↗ · 中文优化:龙虾技能库