caveman-setup
Connect your app to Caveman measurement
LLM requests can be difficult to measure across SDKs and providers. This skill identifies live callsites, routes them through Caveman, and verifies one measured request.
توقف واطلب التأكيد قبل التثبيت.
راجع الخطة واحصل على موافقة صريحة من المستخدم قبل تغيير الملفات.
التثبيت باستخدام Agent لدي
انسخ هذا الطلب إلى Agent لديك. يتضمن صفحة Skill المعتمدة وملف manifest.
Review the Skillstore skill "caveman-setup" from https://skillstore.io/skills/juliusbrussee-caveman-setup.md and its manifest at https://skillstore.io/api/skills/juliusbrussee-caveman-setup/manifest. Verify the artifact. Stop and obtain explicit user consent before installing or changing files.يجب أن يواصل Agent عرض خطته وطلب أي تأكيد تفرضه سياسة الأمان.
موارد مهيّأة لـ Agents
استخدم هذه الروابط عندما يحتاج AI Agent أو crawler أو script إلى سياق نظيف بدلًا من قراءة الصفحة كاملة.
اختبرها
جارٍ استخدام "caveman-setup". Set up measurement for the repository.
النتيجة المتوقعة:
- Found two LLM callsites in the API service.
- Added gateway URL and gateway key references through the existing environment configuration.
- Verification is ready and requires approval before sending a provider request.
جارٍ استخدام "caveman-setup". Check whether the gateway integration succeeded.
النتيجة المتوقعة:
- Verification returned HTTP 200.
- The response included usage details for the configured model.
- Record mode is enabled and no optimization was configured.
التدقيق الأمني
مخاطر عاليةMost static findings are false positives caused by Markdown formatting, configuration examples, and documented environment-variable use. The skill intentionally routes LLM requests through a third-party gateway and can forward provider credentials in byok mode. It also directs agents to send a billable verification request without obtaining approval at execution time.
مخاوف أمنية مؤكدة (2)
عناصر مراجعة القدرات (10)
هذه قدرات محلية حقيقية قد يُتوقع وجودها لهذه المهارة، لذا فهي تتطلب مراجعة ولكن لا تُحتسب كسلوك خبيث مؤكد.
عوامل الخطر
⚙️ الأوامر الخارجية (50)
🌐 الوصول إلى الشبكة (4)
🔑 متغيرات البيئة (26)
شارك واستشهد بهذا التقرير
شارك تقرير التقييم المرتبط بالإصدار والشارة المحايدة وبطاقة التضمين والاستشهادات. تعرض Skillstore الأدلة من دون أن تقرر ما إذا كانت هذه المهارة آمنة.
نسخ رابط التقرير
https://skillstore.io/skills/juliusbrussee-caveman-setup/audits/9?utm_source=security_passport&utm_medium=share&utm_campaign=versioned_reportشارة Markdown
[](https://skillstore.io/skills/juliusbrussee-caveman-setup?utm_source=security_passport_badge)شارة HTML
<a href="https://skillstore.io/skills/juliusbrussee-caveman-setup?utm_source=security_passport_badge"><img src="https://skillstore.io/badges/skills/juliusbrussee-caveman-setup/security.svg" alt="Skillstore security assessment" loading="lazy"></a>بطاقة قابلة للتضمين
<iframe src="https://skillstore.io/embed/skills/juliusbrussee-caveman-setup.html" title="Skillstore Security Assessment" sandbox="allow-popups allow-popups-to-escape-sandbox" loading="lazy" referrerpolicy="no-referrer" width="420" height="180"></iframe>الاستشهادات الأكاديمية (APA · BibTeX · CFF)
اقتباس APA
juliusbrussee. (2026). caveman-setup security audit report (audit version 9) [Author version unspecified]. Skillstore. https://skillstore.io/skills/juliusbrussee-caveman-setup/audits/9اقتباس BibTeX
@techreport{juliusbrussee-juliusbrussee-caveman-setup-2026,
author = {juliusbrussee},
title = {caveman-setup security audit report (audit version 9)},
institution = {Skillstore},
year = {2026},
number = {9},
url = {https://skillstore.io/skills/juliusbrussee-caveman-setup/audits/9},
note = {Author version unspecified}
}CITATION.cff
cff-version: 1.2.0
message: "If you use this Skill, cite its author and this versioned security audit report."
title: "caveman-setup security audit report (audit version 9)"
version: "unspecified"
type: report
authors:
- name: "juliusbrussee"
date-released: "2026-09-08"
url: "https://skillstore.io/skills/juliusbrussee-caveman-setup/audits/9"
identifiers:
- type: other
value: "skillstore:juliusbrussee-caveman-setup:audit:9"
description: "Skillstore immutable audit report identifier"
تقييم Skillstore
سبب هذا التقييم موثوقية الأدلة: متوسطما الذي يمكنك بناؤه
Measure a production AI service
Route existing application LLM traffic through the gateway to capture request usage and spend.
Standardize SDK gateway routing
Apply documented gateway configuration to OpenAI, Anthropic, or framework-based LLM clients.
Verify observability onboarding
Send one minimal request and confirm that the gateway records usage before wider rollout.
جرّب هذه الموجّهات
Set up Caveman measurement for this repository. First identify all live LLM callsites and show me the planned changes.
Configure the existing OpenAI SDK client to use the Caveman gateway. Use environment variables and preserve current provider behavior.
Review this repository for LLM callsites and propose the minimal Caveman gateway integration. Do not make unrelated changes.
After configuring Caveman, show the exact verification request and wait for my approval before sending any billable traffic.
أفضل الممارسات
- Review the proposed file changes before applying them.
- Store gateway and provider credentials only in ignored environment files or a managed secret store.
- Confirm the target gateway and approve the billable verification request before it runs.
تجنب
- Do not hardcode gateway or provider credentials in application source.
- Do not route traffic to an unverified gateway URL.
- Do not report successful measurement without an observed verification result.
الأسئلة المتكررة
What does this skill configure?
Does it change model output?
Which client libraries are covered?
Are credentials required?
Does verification cost money?
Should I approve network activity first?
تفاصيل المطور
المؤلف
juliusbrusseeالترخيص
MIT
مراجعة Skillstore
r1
تنبيه الإصدار
لم يعلن المؤلف عن إصدار.
مرجع
0acc95b40c367e2016e824a72b27b83b507ef020
حداثة الصيانة
٨/٩/٢٠٢٦
الاستخدام
0 تنزيلات · 0 مشاهدات
بنية الملفات
📄 SKILL.md