好多素教需求单相关skill
Analysis
This instruction-only skill is coherent, but it can use a real production account to create, edit, approve, reject, close, transfer, export, or bulk-change business records.
Findings (3)
Artifact-based informational review of SKILL.md, metadata, install specs, static scan signals, and capability signals. ClawScan does not execute the skill or run runtime probes.
Checks for instructions or behavior that redirect the agent, misuse tools, execute unexpected code, cascade across systems, exploit user trust, or continue outside the intended task.
“默认使用正式环境,无需询问用户想要使用哪个环境” ... “已登录 ... 直接执行用户请求的操作” ... “编辑 / 提交审核 / 通过 / 驳回 / 关闭”
The skill defaults to production and instructs the agent to proceed directly when logged in, while also documenting actions that can materially change business records.
“批量新建需求单” ... “批量更换负责人” ... “批量导入其他费用项” ... “导出”
The page guide documents bulk and export actions; they are not shown as automatic, but if invoked with the wrong filters or selections they could affect many records.
Checks whether tool use, credentials, dependencies, identity, account access, or inter-agent boundaries are broader than the stated purpose.
“需要登录系统,请提供您的手机号” ... “请提供收到的短信验证码”
The login flow asks the user for a phone number and SMS verification code, allowing the agent/browser session to act with the user's CAS-authenticated privileges.
