OpenClaw: suspicious
VirusTotal: suspicious
StaticScan: clean
OpenClaw: suspicious
The skill's instructions mostly match a local browser-bridge controller, but it asks the agent to read/write API keys and config files in the user's home and references env vars/config paths that are ... [内容已截断]
VirusTotal: suspicious VT 报告
静态扫描: clean
No suspicious patterns detected.
README 未提供
无文件信息
{
"latestVersion": {
"_creationTime": 1774530040032,
"_id": "k977nph3qt579zykmfm9ftfwjh83m4pt",
"changelog": "**Ziniao Assistant 1.0.1 introduces dynamic tool discovery for safer, more reliable browser control.**\n\n- On skill load or before first tool use, fetch available tools from the bridge via GET \/zclaw\/tools and only allow invoking tool names from this live list.\n- Prevents using hallucinated or invalid tool names by always mapping user actions to names in the session's allowedTools.\n- Retains static fallback allowlist for tool names only if the bridge registry cannot be reached.\n- No changes to browser control capabilities or stop-on-blocker logic.\n- Updated documentation for dynamic discovery, static fallback, and stricter tool invocation flow.",
"changelogSource": "user",
"createdAt": 1774530040032,
"version": "1.0.1"
},
"owner": {
"_creationTime": 0,
"_id": "s17daw69gp84x2gww3hnm0tsqh83nv19",
"displayName": "ziniao-open",
"handle": "ziniao-open",
"image": "https:\/\/avatars.githubusercontent.com\/u\/106373185?v=4",
"kind": "user",
"linkedUserId": "kn71w0k7nr8gzjyvhtsqcy1dcd82t8pv"
},
"ownerHandle": "ziniao-open",
"skill": {
"_creationTime": 1773653331763,
"_id": "kd76g0qg1r0h88ksa9kdh1jgph8316ss",
"badges": [],
"createdAt": 1773653331763,
"displayName": "ziniao-assistant",
"latestVersionId": "k977nph3qt579zykmfm9ftfwjh83m4pt",
"ownerPublisherId": "s17daw69gp84x2gww3hnm0tsqh83nv19",
"ownerUserId": "kn71w0k7nr8gzjyvhtsqcy1dcd82t8pv",
"slug": "ziniao-assistant",
"stats": {
"comments": 0,
"downloads": 428,
"installsAllTime": 0,
"installsCurrent": 0,
"stars": 1,
"versions": 2
},
"summary": "Control Ziniao Browser via the local Ziniao bridge. On skill load or before first invoke, GET \/zclaw\/tools and treat returned name list as the only allowed t...",
"tags": {
"latest": "k977nph3qt579zykmfm9ftfwjh83m4pt"
},
"updatedAt": 1774768100676
}
}