tianyancha-cn

v1.0.0

企业信息查询 - 天眼查/企查查/爱企查数据查询(Bloomberg 终端中国版)

2· 820·5 current·6 all-time
byGuohongbin@guohongbin-git
MIT-0
Download zip
LicenseMIT-0 · Free to use, modify, and redistribute. No attribution required.
Security Scan
VirusTotalVirusTotal
Benign
View report →
OpenClawOpenClaw
Benign
high confidence
Purpose & Capability
The name/description describe company-information lookups and the SKILL.md contains API examples (天眼查, 企查查) and free alternatives. Required credentials (API token placeholders) shown in examples are consistent with the APIs being referenced; nothing unrelated (e.g., cloud provider keys) is requested.
Instruction Scope
Instructions are scoped to calling public APIs (curl examples) and a suggested third-party Python package. There are no instructions to read local files, access unrelated environment variables, or transmit agent environment/config to external endpoints beyond the documented APIs.
Install Mechanism
This is an instruction-only skill (no install spec, no code). SKILL.md suggests installing a third-party pip package ('tianyancha') but the skill does not itself install anything. Users should vet third-party packages before pip installing; otherwise the lack of an install mechanism is low risk.
Credentials
The skill declares no required env vars or credentials. Example snippets show placeholders for API tokens which are appropriate for these APIs. The skill does not ask for unrelated secrets or multiple unrelated credentials.
Persistence & Privilege
always is false and the skill has no install-time persistence. It does not request elevated or persistent system privileges or modify other skills' configuration.
Assessment
This skill appears coherent for looking up Chinese company information. Before installing or running it: (1) do not paste real API keys into public prompts—store them in your agent's secure credential store if needed; (2) if you will pip install the 'tianyancha' package, verify the package source, maintainer reputation, and inspect the package for unexpected behavior; (3) confirm you have legitimate access/paid plan for the APIs (calls may cost money and have rate limits); (4) ensure use of company data complies with local privacy/regulatory rules. If you want stricter isolation, run queries from a dedicated environment or restrict network access for the agent.

Like a lobster shell, security has layers — review code before you run it.

latestvk97ddw6s7srk29ccx8w7fvqdhn81f04n

License

MIT-0
Free to use, modify, and redistribute. No attribution required.

Runtime requirements

🏢 Clawdis

Comments