competitive-product-research

v1.0.0

Competitive product research expert: structured benchmarking across 8 UX dimensions, outputs an actionable HTML report with S/A/B/C health score and P0/P1/P2...

1· 45·0 current·0 all-time
MIT-0
Download zip
LicenseMIT-0 · Free to use, modify, and redistribute. No attribution required.
Security Scan
VirusTotalVirusTotal
Benign
View report →
OpenClawOpenClaw
Benign
high confidence
Purpose & Capability
Name/description (benchmarking across 8 UX dimensions and producing an HTML report) align with the provided SKILL.md, README, playbook, and HTML template. The skill requests no binaries, env vars, or config paths — consistent with an instruction-only research/reporting tool.
Instruction Scope
SKILL.md directs the agent to collect public information and user-supplied materials and to annotate every factual claim with a source (SRC-xxx). It explicitly forbids bypassing logins, scraping restricted content, and fabricating data. This is coherent for a research skill, but it assumes the agent has (or will be granted) a web-browsing/data-access capability; if browsing is unavailable the agent may hallucinate sources despite the 'no fabrication' rule. Also the skill can auto‑infer missing inputs (marked as [推断]) — reasonable but gives the agent some discretion, so outputs should be validated by a human.
Install Mechanism
No install spec and no code files — instruction-only skill. Nothing is written to disk or downloaded during install, which is low-risk and consistent with its stated behavior.
Credentials
The skill requires no environment variables, credentials, or special config paths. That is appropriate for a public-information + user-materials research skill.
Persistence & Privilege
always:false and default model invocation are set. The skill does not request persistent presence or elevated privileges and does not modify other skills or system settings.
Assessment
This skill appears internally consistent and low-risk, but check these practical points before installing or running it: - Verify browsing/data access: the SKILL.md expects the agent to gather public information (URLs). If your agent instance lacks safe web browsing/tools, results may be low-quality or the model may hallucinate sources — always check SRC entries the skill generates. - Do not supply secrets: the skill only needs public info and optional screenshots/docs; never provide credentials, keys, or internal secrets when asking it to collect data. - Validate sources and findings: the skill mandates source citation, but models can still fabricate — spot-check that cited URLs and SRC items actually support the claims before acting on recommendations. - Privacy of user materials: uploaded screenshots/recordings may contain internal info; confirm you are permitted to share them with the skill and that the 'shareable' output mode will properly redact sensitive fields. - Upstream provenance: the package metadata (claw.json) lists a GitHub repo and a support URL — if you want stronger assurance, review that repository and the author (Chris1Wang3) before widespread use. If you need the skill to fetch live web data, ensure your agent platform enables a controlled browsing tool or provide vetted source URLs yourself to reduce hallucination risk.

Like a lobster shell, security has layers — review code before you run it.

latestvk971vttad8178kpahhfpz1h2x9845c4r

License

MIT-0
Free to use, modify, and redistribute. No attribution required.

Comments