前端主题工程师 组件与页面构建

PassAudited by VirusTotal on May 8, 2026.

Overview

Type: OpenClaw Skill Name: frontend-component-pagebuilder Version: 1.1.0 The skill bundle defines a frontend engineering role for the Weline framework, focusing on component and PageBuilder development. The instructions in SKILL.md establish standard development workflows, security-conscious constraints (e.g., forbidding third-party CDNs and browser dialogs), and clear collaboration boundaries. No indicators of malicious intent, data exfiltration, or unauthorized execution were found.

Findings (0)

Artifact-based informational review of SKILL.md, metadata, install specs, static scan signals, and capability signals. ClawScan does not execute the skill or run runtime probes.

What this means

The skill itself is benign, but the agent may follow additional local instructions outside this artifact.

Why it was flagged

The skill delegates detailed implementation guidance to local project files that were not included in this review, so those files could affect agent behavior if they are missing, stale, or untrusted.

Skill content
Read the matching source skill material and confirm the expected directory layout. ... Source Material - `AI-ENTRY.md` - `CLAUDE.md` - `dev/ai/skills/frontend-components/SKILL.md` ...
Recommendation

Before relying on this skill, review the referenced local guidance files in the project and ensure they are trusted and current.

What this means

If the agent sends collaboration updates, it may share task context with the named Weline technical lead role.

Why it was flagged

The skill includes collaboration and notification instructions involving another named role or agent, but the artifact does not define the communication channel or data boundaries.

Skill content
Know the Weline AI agent roster defined in the shared skill and `dev/ai/agent/README.md`. ... notify `@Weline-技术主管`.
Recommendation

Use normal project confidentiality practices and avoid including secrets or sensitive customer data in collaboration notifications unless explicitly approved.