安全扫描
OpenClaw
可疑
medium confidenceNULL
评估建议
This skill is a coherent, well-documented methodology bundle — not code that requests secrets — but it instructs agents to make persistent, system-level changes (cloning into ~/.openclaw/skills/, editing AGENTS.md/SOUL.md, pre-creating files, intercepting /reset). Before installing or following its instructions: 1) review the upstream GitHub repo content and commit history yourself; 2) do not let an agent autonomously edit core agent configuration without explicit human approval and backups; 3) ...详细分析 ▾
✓ 用途与能力
Name/description (TPR methodology for multi-agent orchestration) matches the provided files: SKILL.md plus many reference templates and operational guides. The repository-style docs and templates are appropriate for a methodology skill.
⚠ 指令范围
The SKILL.md and README do more than describe methodology: they instruct agents to clone the repo into ~/.openclaw/skills/, edit core agent configuration files (AGENTS.md / SOUL.md), pre-create files, use spawn/edit/write tools, and to 'intercept' /reset to force writing self-improvement artifacts. Those instructions direct persistent changes to agent configuration and runtime behavior and give the skill broad discretion over file creation and control-flow interception.
✓ 安装机制
There is no install spec in the registry metadata; this is an instruction-only skill. The README suggests using git clone from a public GitHub repo (a reasonable distribution method), but the registry does not perform the install itself.
✓ 凭证需求
The skill declares no required environment variables, binaries, or credentials. Nothing in the metadata requests unrelated secrets. However, the guidance to write files and edit agent configs implies the agent executing it needs filesystem and tooling access, which is not declared in requires.*.
⚠ 持久化与权限
Although the skill is not marked always:true, its README and references explicitly instruct mounting the skill into other agents' core config (AGENTS.md / SOUL.md) and intercepting /reset to persist 'patterns.md' and corrections — i.e., modifying other agents' configuration and changing global agent behavior. That capability is powerful and should be granted only with explicit human consent and review.
安全有层次,运行前请审查代码。
运行时依赖
无特殊依赖
版本
latestv2.0.12026/4/8
NULL
● 无害
安装命令
点击复制官方npx clawhub@latest install tpr-framework-main
镜像加速npx clawhub@latest install tpr-framework-main --registry https://cn.longxiaskill.com