← 返回
未分类 中文

Security Scanner Triage

Triage security/virus scanner findings for skills and automations. Use when scanner reports mixed-risk findings (defaults, credential handling, data routing,...
对技能和自动化的安全/病毒扫描结果进行分类处理。当扫描器报告混合风险结果(默认值、凭证处理、数据路由等)时使用。
okikesolutions
未分类 clawhub v0.1.0 1 版本 100000 Key: 无需
★ 0
Stars
📥 417
下载
💾 0
安装
1
版本
#latest

概述

Security Scanner Triage

Workflow

  1. Normalize findings
    • Convert scanner text into discrete claims.
    • Group by category: data routing, credentials, defaults, docs mismatch, privilege/persistence.
  1. Verify against code/docs
    • Locate exact file/line evidence.
    • Mark each claim as:
    • Confirmed
    • Partially confirmed
    • Not reproducible
  1. Risk rate
    • Critical / High / Medium / Low
    • Include blast radius and exploitability notes.
  1. Remediation plan
    • Provide minimal patch order:

1) safety first

2) behavior/docs consistency

3) version bump and publish notes

  1. Verification
    • Provide re-scan checklist and expected clean-state signals.

Output format

Use references/output-template.md.

Guardrails

  • Never leak secrets from .env.
  • Distinguish trust/disclosure issues from active vulnerabilities.
  • Always separate "data-routing transparency" findings from "security-impact" findings.

版本历史

共 1 个版本

  • v0.1.0 当前
    2026-05-03 09:39 安全 安全

安全检测

腾讯云安全 (Keen)

安全,无风险
查看报告

腾讯云安全 (Sanbu)

安全,无风险
查看报告

🔗 相关推荐

productivity

Plan2meal

okikesolutions
管理您的Plan2Meal React Native应用中的食谱和购物清单。支持从URL添加食谱、搜索、查看及管理购物清单。
★ 5 📥 4,970

Convex Deploy Env Doctor

okikesolutions
验证并修复 Convex 部署配置,适用于调试 Convex URL/回调/环境问题、OAuth 回调不匹配、.site与 .cloud 等问题。
★ 0 📥 388

ClawHub Release Manager

okikesolutions
Safely release and publish skill updates to ClawHub with version bump discipline. Use when preparing patch/minor release
★ 0 📥 323