风险评分

47/100 (Medium)

OpenClaw: suspicious
VirusTotal: suspicious
StaticScan: clean

spec驱动开发vibe coding skill

作者: 胡实
Slug:spec-driven-dev
版本:1.0.0
更新时间:2026-03-25 09:56:49
风险信息

OpenClaw: suspicious

查看 OpenClaw 分析摘要(前 200 字预览)
The skill's stated purpose (driving a spec-driven lifecycle in a cloned Git repo) is plausible, but there are inconsistencies around credential handling and some behaviors that could let sensitive dat...

[内容已截断]

VirusTotal: suspicious VT 报告

静态扫描: clean

No suspicious patterns detected.
README

README 未提供

文件列表

无文件信息

下载
下载官方 ZIP
原始 JSON 数据
{
    "latestVersion": {
        "_creationTime": 1774403647105,
        "_id": "k97dwhz9rsghy646kmdaamst2d83jqvk",
        "changelog": "Initial release of spec-driven-dev: full-lifecycle, gated, and multi-language spec-driven development in a Git repository.\n\n- Drives the entire development cycle: `init → requirements → architecture → process_design → project_plan → coding → test → bugfix → code_review → release`\n- Enforces artefact output and stage-gating for each phase, with automated commit checks and LOGAF Checklist for code reviews\n- Multi-language support and OpenSkills progressive loading; auto-injects structured progress checkpoints throughout workflow\n- Built-in credential management for secure, token-based Git operations (supports GitHub, GitLab, Bitbucket, Gitea)\n- All actions and artefacts tracked, with checkpoints and iteration summaries for every phase\n- Extensive configuration via environment variables and context injection for project constraints and feedback",
        "changelogSource": "user",
        "createdAt": 1774403647105,
        "parsed": {
            "clawdis": {
                "emoji": "🛠️",
                "install": [
                    {
                        "bins": [
                            "git"
                        ],
                        "formula": "git",
                        "id": "git-brew",
                        "kind": "brew",
                        "label": "安装 git(brew)"
                    }
                ],
                "primaryEnv": "SPEC_DEV_GIT_TOKEN",
                "requires": {
                    "bins": [
                        "git"
                    ],
                    "env": [
                        "SPEC_DEV_GIT_TOKEN"
                    ]
                }
            }
        },
        "version": "1.0.0"
    },
    "owner": {
        "_creationTime": 0,
        "_id": "s1762f2j3c8k9jxhm9nje7n6vs83gfv3",
        "displayName": "胡实",
        "handle": "listenbehind",
        "image": "https:\/\/avatars.githubusercontent.com\/u\/22045509?v=4",
        "kind": "user",
        "linkedUserId": "kn77smsr242e1xten02kzjxvkh83ggq2"
    },
    "ownerHandle": "listenbehind",
    "skill": {
        "_creationTime": 1774403647105,
        "_id": "kd7bfq13qt2gwwckscngbbf31983j4qa",
        "badges": [],
        "createdAt": 1774403647105,
        "displayName": "spec驱动开发vibe coding skill",
        "latestVersionId": "k97dwhz9rsghy646kmdaamst2d83jqvk",
        "ownerPublisherId": "s1762f2j3c8k9jxhm9nje7n6vs83gfv3",
        "ownerUserId": "kn77smsr242e1xten02kzjxvkh83ggq2",
        "slug": "spec-driven-dev",
        "stats": {
            "comments": 0,
            "downloads": 0,
            "installsAllTime": 0,
            "installsCurrent": 0,
            "stars": 0,
            "versions": 1
        },
        "summary": "在克隆的 Git 仓库中驱动完整的规格驱动开发生命周期(init→requirements→architecture→process_design→project_plan→coding→test→bugfix→code_review→release)。阶段门控、产物强制输出、多语言支持,内置 commit me...",
        "tags": {
            "latest": "k97dwhz9rsghy646kmdaamst2d83jqvk"
        },
        "updatedAt": 1774403809122
    }
}