安全扫描
OpenClaw
安全
medium confidenceNULL
评估建议
This skill appears coherent and low-risk because it is instruction-only and requests no credentials or installs. However, the source/homepage is not authoritative in the package metadata (no homepage provided, and owner ID is opaque). Before installing: 1) verify the publisher (ask who maintains 'MediaClaw' and confirm the mediaclaw.ai/mediaclawbot.com links are legitimate), 2) do not provide any API keys, passwords, or private account tokens in conversation unless you confirm the integration an...详细分析 ▾
✓ 用途与能力
The name/description (MCN Toolkit for agencies and KOL management) match the content of SKILL.md. There are no requested env vars, binaries, or install steps that would be out of scope for a content-management assistant.
ℹ 指令范围
SKILL.md is high-level, containing capabilities and example prompts rather than explicit runtime commands. That keeps scope narrow and readable, but the prose is broad (e.g., 'generate platform-ready videos', 'cross-platform analytics') and could give the agent wide discretion in how to fulfill tasks. There are no instructions to read local files, access system paths, or exfiltrate data.
✓ 安装机制
No install spec and no code files are present (instruction-only). This minimizes on-disk execution risk — nothing will be downloaded or installed by the skill itself.
✓ 凭证需求
The skill declares no required environment variables, no primary credential, and no config paths. This aligns with its stated purpose and does not request broad credentials or secrets.
✓ 持久化与权限
The skill is not flagged always:true and uses normal agent invocation defaults. It does not request permanent presence or attempt to modify other skills or system settings.
安全有层次,运行前请审查代码。
运行时依赖
无特殊依赖
版本
latestv1.0.22026/3/26
NULL
● 无害
安装命令
点击复制官方npx clawhub@latest install mcn-toolkit
镜像加速npx clawhub@latest install mcn-toolkit --registry https://cn.longxiaskill.com