skill-marketplace-publisher
Publica skills en marketplaces de IA con auditorías de seguridad
Los desarrolladores de skills de IA necesitan una forma confiable de publicar sus creaciones en marketplaces públicos. Esta skill proporciona publicación de extremo a extremo con auditoría automatizada de seguridad, empaquetado y envío a Skillstore y SkillMap.
스킬 ZIP 다운로드
Claude에서 업로드
설정 → 기능 → 스킬 → 스킬 업로드로 이동
토글을 켜고 사용 시작
테스트해 보기
"skill-marketplace-publisher" 사용 중입니다. Ejecutar auditoría en una skill sin problemas
예상 결과:
Public skill audit: /path/to/skill
Summary: HIGH=0 MEDIUM=0 INFO=0
No obvious public-publishing risks found.
"skill-marketplace-publisher" 사용 중입니다. Enviar a Skillstore exitosamente
예상 결과:
{
"success": true,
"data": {
"submission_id": "sub_abc123"
}
}
Status URL: https://skillstore.io/submissions/sub_abc123
"skill-marketplace-publisher" 사용 중입니다. Construir paquete público desde skill
예상 결과:
Analyzed skill structure
Identified 2 items for removal (local paths)
Built public package to /skill-packages/my-skill-public
Package contains: SKILL.md, agents/, scripts/, LICENSE
보안 감사
낮은 위험This skill is a legitimate security audit and marketplace publishing tool. Static analysis detected 126 patterns that are primarily false positives: (1) Pattern definitions in public_skill_audit.py designed to detect secrets were flagged as containing secrets, (2) Markdown backticks in documentation were misidentified as Ruby shell execution, (3) Public API endpoints for marketplace submission were flagged as hardcoded URLs. The skill performs local file auditing, makes outbound HTTP requests to public marketplace APIs, and uses shell commands for git operations - all appropriate for its intended purpose.
중간 위험 문제 (1)
낮은 위험 문제 (3)
위험 요인
⚙️ 외부 명령어 (4)
🔑 환경 변수 (1)
📁 파일 시스템 액세스 (2)
품질 점수
만들 수 있는 것
Desarrollador Independiente Publicando su Primera Skill
Un desarrollador completa una skill de Claude y quiere enviarla a Skillstore para descubrimiento público. La skill audita su código, la empaqueta de forma segura, crea un repo de GitHub y maneja el flujo de trabajo de envío.
Equipo Preparando Skills para Portafolio de Organización
Un equipo mantiene múltiples skills internas y quiere publicar algunas seleccionadas en marketplaces. El flujo de trabajo asegura auditoría, empaquetado y envío consistentes en todas las skills.
Creador de Skills Enviando a Múltiples Marketplaces
Un creador quiere máxima visibilidad listando en Skillstore y SkillMap. La skill maneja diferentes formatos de envío y rastrea el estado de envío para cada marketplace.
이 프롬프트를 사용해 보세요
Audit my skill at /path/to/my-skill for public publishing safety. Check for secrets, local paths, and portability issues. Report any HIGH or MEDIUM findings.
Publish my skill at /path/to/my-skill to Skillstore. Target mode is public. Create a GitHub repo under my account sliense-ysd with repo name my-skill-public. Run the full workflow including audit, packaging, validation, repo creation, and submission.
Submit my published skill at https://github.com/sliense-ysd/my-skill to both Skillstore and SkillMap. For Skillstore, include notes about the public audit date. For SkillMap, use skill name 'My Helper Skill' and email dev@example.com.
Build a public package from my skill at /path/to/my-skill. Run analyze first to identify issues, then build with mode public. Output to the default skill-packages directory.
모범 사례
- Siempre ejecuta la auditoría de seguridad pública antes de publicar para detectar secretos y referencias de rutas locales temprano
- Usa el modo público empaquetado cuando tu skill depende de archivos internos o contiene lógica de negocio que no debe exponerse
- Verifica que tu SKILL.md tenga frontmatter válido con name y description antes del envío
피하기
- No publiques skills fuente que contengan claves API reales, credenciales de base de datos o URLs internas
- No saltes el paso de auditoría incluso para skills simples - las rutas codificadas son omisiones comunes
- No envíes a CrowdHub o marketplaces no verificados sin confirmar las URLs de envío actuales