aicone通用 AI 机器人克隆技能(安全加固版 v2.0)。支持导出/导入配置,ZIP Slip 防护,元数据脱敏,敏感文件自动排除。用于 A→B 能力复制、团队共享、备份恢复。
Install via ClawdBot CLI:
clawdbot install srchengtao2025/aiconeGrade Fair — based on market validation, documentation quality, package completeness, maintenance status, and authenticity signals.
Accesses sensitive credential files or environment variables
/etc/passwdAI Analysis
This skill has legitimate functionality for cloning AI configurations but contains concerning security signals including credential access patterns and the ability to export sensitive workspace files. While it implements security hardening measures, the skill's capability to access and package system files like /etc/passwd during export operations creates significant risk if misused or compromised.
Audited Apr 18, 2026 · audit v1.0
Generated Mar 22, 2026
A company wants to deploy identical AI agents across multiple departments for consistent customer service. Using this skill, they can clone a master agent's configuration, including personality and tools, to new instances quickly, ensuring uniformity while leveraging security features to prevent data leaks.
Research teams across institutions need to share AI agent setups for collaborative projects. This skill allows them to export configurations with metadata redaction to protect sensitive paths, enabling secure sharing of agent capabilities without exposing internal system details.
An organization uses AI agents for critical operations and needs a backup solution. The skill's export and import functions provide a way to create and restore agent configurations from ZIP packages, with built-in security checks to ensure integrity during recovery processes.
A tech firm trains new employees by providing pre-configured AI agents for development tasks. Cloning allows them to distribute standardized agent setups efficiently, with options to exclude sensitive files like API keys to maintain security during onboarding.
A business runs AI agents on different cloud platforms and needs to replicate configurations across environments. The skill's path validation and temporary directory safety features ensure secure transfers, preventing issues like ZIP slip attacks during cross-platform imports.
Offer this cloning skill as part of a subscription-based AI platform, where users pay monthly for access to secure agent management tools. Revenue comes from tiered plans based on usage limits, such as the number of clones or advanced security features.
Sell licenses to large organizations for internal use, providing custom support and integration services. Revenue is generated through one-time license fees or annual contracts, targeting businesses that need high-security, scalable agent deployment solutions.
Provide basic cloning functionality for free to attract users, then charge for premium features like enhanced security audits, batch operations, or priority support. Revenue streams include upgrades and add-ons for advanced use cases.
💬 Integration Tip
Integrate this skill into existing AI workflows by automating export/import commands via scripts, ensuring to run security verifications before each import to prevent vulnerabilities.
Scored Jun 17, 2026
Security-first skill vetting for AI agents. Use before installing any skill from ClawdHub, GitHub, or other sources. Checks for red flags, permission scope,...
Security scanner for AI agent skills. 9 built-in detection signatures. Identifies secrets, unsafe execution patterns, and prompt injection. Sub-50ms results.
Wallet anti-theft guard. One-click scan for high-risk wallet approvals to protect user assets. Use when a user asks for a wallet security check, wallet healt...
Comprehensive security audit for an agent's full skill stack. Chains scanner, differ, trust-verifier, and health-monitor into a single assessment with priori...
GEO Audit — AI Search Visibility Checker for ChatGPT, Perplexity, Claude & Gemini. 29-point GEO readiness checklist: robots.txt AI crawler access, Index...
Audit and analyze Solidity smart contracts for security vulnerabilities. Use when reviewing, auditing, or analyzing smart contracts, Solidity code, DeFi prot...