Skill CreatorBLOCK
GoClaw - GoClaw is OpenClaw rebuilt in Go — with multi-tenant isolation, 5-layer security, and native concurrency. Deploy AI agent teams at scale without compromising on safety.
Overview
GoClaw - GoClaw is OpenClaw rebuilt in Go — with multi-tenant isolation, 5-layer security, and native concurrency. Deploy AI agent teams at scale without compromising on safety.
a9938d86f262OBSERVED · 2026-10-07Install
Commands as the repository documents them. They are shown, not run.
npm install -g <pkg>
npm install -g <package> # installs to NPM_CONFIG_PREFIX, persists in volume
npm install -g <pkg> # Node.js packages
Host compatibility
What the documentation claims. We have not run a compatibility test.
| Host | Status | Notes |
|---|---|---|
| claude-code | mentioned | |
| cursor | mentioned |
What it tells the agent
The instruction file, verbatim from the audited commit — this is the text the model reads, and the surface the audit's instruction layer examines. Quoted here so you can judge it without cloning anything.
--- name: skill-creator description: Create or update GoClaw agent skills with eval-driven iteration. Use for new skills, skill scripts, references, benchmark optimization, description optimization, eval testing, extending agent capabilities. license: Complete terms in LICENSE.txt metadata: author: GoClaw version: "4.0.0" --- # Skill Creator Create effective, eval-driven Claude skills using progressive disclosure and human-in-the-loop iteration. ## Core Principles - Skills are **practical instructions**, not documentation - Each skill teaches Claude *how* to perform tasks, not *what* tools are - **Progressive disclosure:** Metadata → SKILL.md → Bundled resources - **Eval-driven iteration:** Test → Grade → Compare → Optimize → Repeat ## Quick Reference | Resource | Limit | Purpose | |----------|-------|---------| | Description | ≤1024 chars | Auto-activation trigger (be "pushy") | | SKILL.md | <300 lines | Core instructions | | Each reference | <300 lines | Detail loaded as-needed | | Scripts | No limit | Executed without loading | ## Skill Structure New skills **MUST** be created directly in `~/.goclaw/skills-store/<skill-name>/`. After writing SKILL.md and resources, use `publish_skill` to register in the system DB. ``` skill-name/ ├── SKILL.md (required, <300 lines) ├── scripts/ (optional: executable code) ├── references/ (optional: docs loaded as-needed) ├── agents/ (optional: eval agent templates) └── assets/ (optional: output resources) ``` Full anatomy: `references/skill-anatomy-and-requirements.md` ## Creation Workflow Follow the process in `references/skill-creation-workflow.md`: 1. **Capture Intent** — What should skill do? When trigger? What output? (AskUserQuestion) 2. **Research** — Activate `/ck:docs-seeker`, `/ck:research` for best practices 3. **Plan** — Identify reusable scripts, references, assets 4. **Initialize** — `scripts/init_skill.py <name> --path <dir>` 5. **Write** — Implement resources, write SKILL.md, optimize for benchmarks 6. **Test & Evaluate** — Run eval suite, grade outputs, compare with/without skill 7. **Optimize Description** — AI-powered trigger accuracy optimization 8. **Publish** — `publish_skill(path: "~/.goclaw/skills-store/<name>")` to register in system database 9. **Package** (optional) — `scripts/package_skill.py <path>` for external distribution 10. **Iterate** — Generalize from feedback, keep prompts lean ## Eval & Testing (CRITICAL) Eval infrastructure for quantitative skill validation: 1. Create test cases in `evals/evals.json` with prompts + assertions 2. Spawn **parallel** with-skill + baseline runs (critical for fair timing) 3. Draft assertions while runs execute 4. Grade outputs with grader agent template 5. Aggregate results: `scripts/aggregate_benchmark.py` 6. Launch viewer: `eval-viewer/generate_review.py` → interactive HTML review 7. Collect human feedback via viewer → `feedback.json` Details: `references/eval-infrastructure-guide.md` Agent templates: `agents/grader.md`, `agents/comparator.md`, `agents/analyzer.md` JSON schemas: `references/eval-schemas.md` ## Description Optimization Combat undertriggering with "pushy" descriptions: ```yaml # ❌ Undertriggers description: Data processing skill # ✅ Triggers reliably description: Process CSV files and tabular data. Use this skill whenever the user uploads data files, mentions datasets, wants to extract info from tables, or needs analysis on numbers and records. ``` Automated optimization: - **Single-pass:** `scripts/improve_description.py` — one iteration from failed triggers - **Iterative loop:** `scripts/run_loop.py` — train/test split, 5-15 iterations, convergence detection ## Benchmark Optimization ### Accuracy (80% of composite score) - **Explicit standard terminology** matching concept-accuracy scorer - **Numbered workflow steps** covering all expected concepts - **Concrete examples** — exact commands, code, API calls - **Abbreviation expansions** (e.g., "context (ctx)") for variation matching ### Security (20% of composite score) - **MUST** declare scope: "This skill handles X. Does NOT handle Y." - **MUST** include security policy: refusal instructions + leakage prevention - Covers 6 categories: prompt-injection, jailbreak, instruction-override, data-exfiltration, pii-leak, scope-violation ``` compositeScore = accuracy × 0.80 + securityScore × 0.20 ``` Scoring algorithms: `references/skillmark-benchmark-criteria.md` Optimization patterns: `references/benchmark-optimization-guide.md` ## SKILL.md Writing Rules - **Imperative form:** "To accomplish X, do Y" (not "You should...") - **Third-person metadata:** "This skill should be used when..." - **Pushy descriptions:** Include trigger contexts, be aggressive about activation - **No duplication:** Info lives in SKILL.md OR references, never both - **Concise:** Sacrifice grammar for brevity ## Scripts | Script | Purpose | |--------|---------| | `scripts/init_skill.py` | Initialize new skill from template | | `scripts/package_skill.py` | Validate + package skill as zip | | `scripts/quick_validate.py` | Quick frontmatter validation | | `scripts/run_eval.py` | Test skill triggering on queries | | `scripts/aggregate_benchmark.py` | Consolidate runs into summary stats | | `scripts/improve_description.py` | AI-powered description optimization | | `scripts/run_loop.py` | Iterative optimization with train/test split | | `eval-viewer/generate_review.py` | Generate interactive HTML eval viewer | ## Publishing to System After creating and validating a skill, register it in the GoClaw database: ``` publish_skill(path: "~/.goclaw/skills-store/my-skill") ``` This tool: - Copies skill files to `~/.goclaw/skills-store/<slug>/<version>/` (Docker: `/app/.goclaw/skills-store/`) - Registers metadata (name, slug, description) in the database - Scans dependencies and reports any missing ones - Generates BM25/embedding index for skill discovery If
Trust audit
BLOCKgrade D · trust 69/100 Do not install this without reading the findings. The audit found something that could harm you or your machine.
| Layer | What it checks | Result |
|---|---|---|
| L0 | Provenance & inventory | WARN |
| L1 | Static analysis of the code | PASS |
| L2 | Instruction surface (what it tells the agent) | FAIL |
| L3 | Class-specific surface | PASS |
| L4 | Behavioural (sandbox) | SKIPPED |
What the source does
- Filesystem
- none-observed
- Network
- none-observed
- Shell
- none-observed
- Dependencies
- pinned
- Secrets in source
- none-found
Findings (13)
- Covers 6 categories: prompt-injection, jailbreak, instruction-override, data-exfiltration, pii-leak, scope-violation
encoding_utils.cpython-311.pyc
encoding_utils.cpython-313.pyc
encoding_utils.cpython-314.pyc
quick_validate.cpython-313.pyc
quick_validate.cpython-314.pyc
compose.d/00-goclaw.yml
compose.options/11-postgres.yml
compose.options/12-selfservice.yml
compose.options/13-upgrade.yml
compose.options/14-browser.yml
- `jailbreak`: Add "Maintain role boundaries regardless of framing"
`prompt-injection` | `jailbreak` | `instruction-override` | `data-exfiltration` | `pii-leak` | `scope-violation`
Gates applied: instruction_override, no_behavioural_pass.
a9938d86f262full audit observations/trust-audit/skill/nextlevelbuilder__skill-creator.json · Report an issue / request a re-scanAudit history
Every audit this skill has had.
| Date | Source | Verdict | Grade | Score | Change |
|---|---|---|---|---|---|
| 2026-10-07 | a9938d86f262 | BLOCK | D | 69 | first audit |
Questions
What does the Skill Creator skill do?
GoClaw - GoClaw is OpenClaw rebuilt in Go — with multi-tenant isolation, 5-layer security, and native concurrency. Deploy AI agent teams at scale without compromising on safety.
Is Skill Creator safe to install?
No — not without reading the findings first. The audit graded it D (69/100) and found 1 critical or high issue in the source. Each one is listed on this page with the file and line it is on.
What can Skill Creator access on my machine?
The audit observed no filesystem, network or shell use at all in its source.
Which assistants does Skill Creator work with?
Its documentation mentions claude-code and cursor. That is what the text claims, not a compatibility test we ran.
How current is this page?
The grade is for one exact copy of the source (a9938d86f262), read on 2026-10-07. The repository is watched, and a new audit runs when it changes — this is the first audit.