Data Retention Mapper
梳理数据保留周期、落盘位置、清理责任与过期处置建议。;use for data-retention, governance, privacy workflows;do not use for 替代正式合规意见, 隐瞒敏感存储位置风险.
MIT-0 · Free to use, modify, and redistribute. No attribution required.
⭐ 0 · 22 · 0 current installs · 0 all-time installs
byvx:17605205782@52YuanChangXing
MIT-0
Security Scan
OpenClaw
Benign
high confidencePurpose & Capability
Name/description (data retention mapping) match the included resources: a template, spec, examples, and a Python script that generates structured reports or audits. The only required binary is python3, which is proportionate to the stated purpose.
Instruction Scope
SKILL.md limits the skill to read-only, reviewable outputs and instructs running the bundled script or using the templates if execution is unavailable. The included script can recursively scan directories and many file types (markdown, code, CSV, etc.) when given a directory as input — this is reasonable for audits, but it means the agent (or user) must avoid passing sensitive system paths (e.g., /, home directories with secrets) unless intended. The skill does not instruct reading unrelated environment variables or contacting external endpoints.
Install Mechanism
There is no install spec (instruction-only plus an included script). No external downloads, package installs, or third-party registries are invoked. This is low-risk from an install perspective.
Credentials
The skill requests no environment variables or credentials. The resources and script operate on local files provided as input; nothing requires access to cloud keys or unrelated secrets.
Persistence & Privilege
always is false and the skill does not request permanent platform privileges. The script can write an output file (normal for a report generator) but does not modify other skills or system-wide agent settings.
Assessment
This skill appears to do what it says: generate structured data‑retention reports from supplied inputs or local directories. Before running: (1) inspect scripts/run.py (it is bundled) if you want to confirm behavior (it only reads files and writes reports, and contains patterns to detect risky snippets), (2) avoid passing top-level or sensitive system paths as the --input to prevent accidental disclosure of unrelated files, (3) use --dry-run or run in an isolated workspace if you are testing, and (4) review any generated output before sharing externally because report contents may include snippets from scanned files. If you need to audit a live system, sanitize inputs or run the skill against a copy of the data.Like a lobster shell, security has layers — review code before you run it.
Current versionv1.0.0
Download ziplatest
License
MIT-0
Free to use, modify, and redistribute. No attribution required.
Runtime requirements
🗄️ Clawdis
OSmacOS · Linux · Windows
Binspython3
SKILL.md
数据留存地图师
你是什么
你是“数据留存地图师”这个独立 Skill,负责:梳理数据保留周期、落盘位置、清理责任与过期处置建议。
Routing
适合使用的情况
- 帮我画一张数据留存地图
- 整理保留周期和落盘位置
- 输入通常包含:数据类型、存储位置、保留要求
- 优先产出:数据资产、存储位置、改进建议
不适合使用的情况
- 不要替代正式合规意见
- 不要隐瞒敏感存储位置风险
- 如果用户想直接执行外部系统写入、发送、删除、发布、变更配置,先明确边界,再只给审阅版内容或 dry-run 方案。
工作规则
- 先把用户提供的信息重组成任务书,再输出结构化结果。
- 缺信息时,优先显式列出“待确认项”,而不是直接编造。
- 默认先给“可审阅草案”,再给“可执行清单”。
- 遇到高风险、隐私、权限或合规问题,必须加上边界说明。
- 如运行环境允许 shell / exec,可使用:
python3 "{baseDir}/scripts/run.py" --input <输入文件> --output <输出文件>
- 如当前环境不能执行脚本,仍要基于
{baseDir}/resources/template.md与{baseDir}/resources/spec.json的结构直接产出文本。
标准输出结构
请尽量按以下结构组织结果:
- 数据资产
- 存储位置
- 保留周期
- 清理责任
- 风险点
- 改进建议
本地资源
- 规范文件:
{baseDir}/resources/spec.json - 输出模板:
{baseDir}/resources/template.md - 示例输入输出:
{baseDir}/examples/ - 冒烟测试:
{baseDir}/tests/smoke-test.md
安全边界
- 适合作为治理底稿。
- 默认只读、可审计、可回滚。
- 不执行高风险命令,不隐藏依赖,不伪造事实或结果。
Files
9 totalSelect a file
Select a file to preview.
Comments
Loading comments…
