
Claude Skills by aibot88
github.com/aibot88这个页面专门讲:怎么把 Yak 的 SSA/SyntaxFlow 能力接进 AI Agent,让 Agent 自动做代码扫描与审计。 参考仓库: - https://github.com/yaklang/irify-sast-skill
覆盖风电、核能、半导体设备、AI基础设施四大领域的深度投资分析专家。
根据CVE编号查找并输出对应的漏洞POC详情,包含漏洞原理、利用步骤、PoC请求/代码、检测条件和修复建议。用法:/cve CVE-2023-6018
Audit local and OpenClaw skill libraries for privacy theft, credential theft, stealthy exfiltration, unsafe execution chains, deceptive instructions, and persistence behavior, then generate a visual HTML security report. Use when Codex needs to security-review one skill or a full skill library before install, enablement, or execution. Do not use for generic cleanup, usage estimation, or app-level security review outside skill packages.
- **知識領域**:Decentralized Federated Learning / Distributed Machine Learning - **資料來源數量**:20 份文件 - **最後更新時間**:2026-04-21 - **適用 Agent 類型**:研究助手 / 技術顧問 / 領域問答機器人
解析招标文件,检索历史标书知识库,生成定制化投标内容
`T1` 在 OpenClaw 的技能模型里,`SKILL.md` 至少需要 `name` 和 `description` 这两个元信息字段。技能本体可以继续挂载脚本、参考资料和资源文件。[Skills docs](https://docs.openclaw.ai/skills)
Configure Static Application Security Testing (SAST) tools for automated vulnerability detection in application code. Use when setting up security scanning, implementing DevSecOps practices, or aut...
食用手册 —— 围绕「吃什么」的生活灵感助手。帮助用户根据手边食材想菜谱、做每周饮食规划、了解食材搭配与储存知识、获取烹饪灵感。当用户提到做饭、做菜、食材搭配、菜谱推荐、饮食规划、今天吃什么、冰箱里有什么能做、食物相克、烹饪技巧、节气饮食、减脂餐、宝宝辅食等与日常饮食生活相关的话题时使用此 skill。
skill-vetter <skill-name></skill-name> ``` **2. Link Checker(2.1K 下载)** — URL 安全和钓鱼检测 ``` clawhub install link-checker ``` **1. Gog(33.8K 下载)** — Google 全家桶集成 一次性接入 Gmail、Calendar、Drive、Docs、Sheets、Contacts 等所有 Google 服务,是目前下载量最高的技能。 ``` clawhub install gog ``` **2. self-improving-agent(32K 下载,338 星⭐)** — 自我改进代理 这是 GitHub 星数最高的技能!能让你的 AI 助手自我学习和优化,持续提升能力。 ``` clawhub install self-improving-agent ``` **3. Summarize(26.1K 下载)** — 全能内容总结工具 支持总结 URL、PDF、图片、音频、YouTube 视频等多种格式,是内容处理的瑞士军刀。 ``` clawh...
Audits smart contract source against vulnerability patterns supplied as YAML. Use when the user provides contract code and a YAML pattern list (e.g. id, name, severity, description, false_positives) and expects a structured JSON report of matches and rationale.
> 目的:这份文档用于说明当前已落地的工作区原生 Skill 封装结果,并保留能力边界、触发语句、参数映射与工作流示例,供后续维护与扩展参考。
Scan a repository for vulnerable dependencies and write the results into Durable Memory.
> "2026 is the year of vibe-coding. Ship fast, audit faster."
Expert code review skill that analyzes pull request diffs and code changes for bugs, security vulnerabilities, performance issues, and adherence to best practices. Provides actionable feedback with severity ratings.
Implement server-side validation with allowlists, specific error messages, type checking, and sanitization to prevent security vulnerabilities and ensure data integrity. Use this skill when creating or editing form request classes, when validating API inputs, when implementing validation rules in controllers or services, when writing client-side validation for user experience, when sanitizing user input to prevent injection attacks, when validating business rules, when implementing error mess...
Security gate for skills. Every new skill MUST pass SkillScan before use. Activate on any install, load, add, evaluate, or safety question about a skill. On first load, run first-run to scan all existing skills. Blocks HIGH/CRITICAL skills. No exceptions.