FitDietKernel
v1.0.1健身饮食的个人知识库 - 让AI精准帮你算饮食(碳循环/生酮/增肌/减脂)
⭐ 1· 89·0 current·0 all-time
MIT-0
Download zip
LicenseMIT-0 · Free to use, modify, and redistribute. No attribution required.
Security Scan
OpenClaw
Benign
high confidencePurpose & Capability
Name/description match the included files: knowledge_base JSON/MD, profile.json, GUIs, and a report generator. No unrelated credentials, binaries, or platform APIs are required. The code and docs are all about diet tracking and macros.
Instruction Scope
SKILL.md explicitly tells the agent to read the local repository (profile.json, knowledge_base/*.json, logs/*.md) and to update/register new foods. Reading and (per instructions) updating local files is expected for a local knowledge-base, but it means the agent needs filesystem access and is expected to write changes to that repo. Also: SKILL.md/logic_rules state the AI will 'auto update food_registry.json' but the shipped Python scripts do not include an explicit API to perform that edit — the update would be performed by whatever agent code you allow to write files.
Install Mechanism
There is no install spec in the registry (instruction-only), but the bundle includes code and a README that suggests git clone or an npx clawhub installer. No remote download/install URLs or extract-from-URL steps are present in the package itself; risk from install mechanism is low if you clone from a trusted source. If you use the npx method, verify the clawhub package and the source repo first.
Credentials
The skill requests no environment variables, credentials, or config paths. Its data access is limited to local files in the repo (profile, knowledge_base, logs, output reports), which is proportionate to a personal diet knowledge-base.
Persistence & Privilege
The skill is not marked 'always'. It expects to read and (per docs) write local files (food_registry.json, logs, weekly_report). This is a normal level of privilege for a local knowledge-base, but installing it will put code and data on disk and the AI (if granted filesystem write) could modify those files.
Assessment
This skill appears to be what it claims: a local personal diet knowledge base with JSON/markdown data, small GUI scripts, and a report generator. Before installing: 1) verify the repository source (README references a GitHub repo); 2) be aware the skill expects the agent to read and possibly write files in the repository (profile.json, food_registry.json, logs, weekly_report) — if you don't want automatic edits, don't grant write access to the agent or back up the folder; 3) the SKILL.md/logic files say the AI will 'auto-update' the food registry, but that behavior is an instruction-level expectation (no dedicated update API is bundled), so review any agent code that will perform those edits; 4) there are no hidden network endpoints or credential requests in the provided files, but if you install via third-party installers (npx/clawhub) confirm those packages and sources first; 5) running GUI/desktop scripts should be done in a safe environment if you are unsure (e.g., isolated VM) — otherwise the skill is coherent and low risk.Like a lobster shell, security has layers — review code before you run it.
latestvk97apwvv56s04ywhkcayynp6dd84mam9
License
MIT-0
Free to use, modify, and redistribute. No attribution required.
Runtime requirements
🏋️ Clawdis
