treg
Access Live Data and Connected APIs with treg
Agents often lack credentials for live data and external APIs. treg searches priced endpoints and calls approved services through one authenticated interface.
No instales este Skill automáticamente.
La política canónica exige la revisión de un operador antes de cualquier acción de instalación.
Instalar con mi Agente
Copia esta solicitud en tu Agente. Incluye la página canónica del Skill y el manifiesto.
Review the Skillstore skill "treg" from https://skillstore.io/skills/superdesigndev-treg.md and its manifest at https://skillstore.io/api/skills/superdesigndev-treg/manifest. Verify the artifact. Do not auto-install. Inspect the skill and report your findings, then wait for an operator or manual installation decision.Tu Agente debe seguir mostrando su plan y solicitar cualquier confirmación exigida por la política de seguridad.
Recursos legibles por agentes
Usa estos enlaces cuando un agente de IA, crawler o script necesite contexto limpio en vez de leer la página completa.
Pruébalo
Usando "treg". Find a provider for subreddit posts, but do not spend any balance.
Resultado esperado:
I found matching endpoints and compared their required inputs, observed reliability, speed, and price. No endpoint was called.
Usando "treg". Prepare a company enrichment request and use the least expensive reliable provider.
Resultado esperado:
The selected provider accepts the company domain you have and has stronger observed reliability. The listed call price requires your confirmation.
Usando "treg". Create a plan for a limited CI agent that can read Stripe balances.
Resultado esperado:
Use a dedicated agent identity, allow only the Stripe tool, grant read-only access, set a daily cap, and review the audit log.
Auditoría de seguridad
CríticoThe audit confirms remote pipe-to-shell installation, credential collection, hidden configuration access, and broad authenticated command execution. Many backtick and URL matches are documentation-only false positives, but the confirmed critical and high-risk workflows require strong user consent and verification.
Preocupaciones de seguridad confirmadas (6)
Elementos de revisión de capacidades (34)
Estas son capacidades locales reales que pueden esperarse para esta habilidad, por lo que requieren revisión, pero no se cuentan como comportamiento malicioso confirmado.
Factores de riesgo
⚙️ Comandos externos (50)
🌐 Acceso a red (11)
📁 Acceso al sistema de archivos (5)
🔑 Variables de entorno (2)
Patrones detectados
Compartir y citar este informe
Comparte el informe de evaluación versionado, la insignia neutral, la tarjeta insertable y las citas. Skillstore presenta evidencias sin decidir si este Skill es seguro.
Copiar enlace del informe
https://skillstore.io/skills/superdesigndev-treg/audits/1?utm_source=security_passport&utm_medium=share&utm_campaign=versioned_reportInsignia Markdown
[](https://skillstore.io/skills/superdesigndev-treg?utm_source=security_passport_badge)Insignia HTML
<a href="https://skillstore.io/skills/superdesigndev-treg?utm_source=security_passport_badge"><img src="https://skillstore.io/badges/skills/superdesigndev-treg/security.svg" alt="Skillstore security assessment" loading="lazy"></a>Tarjeta para insertar
<iframe src="https://skillstore.io/embed/skills/superdesigndev-treg.html" title="Skillstore Security Assessment" sandbox="allow-popups allow-popups-to-escape-sandbox" loading="lazy" referrerpolicy="no-referrer" width="420" height="180"></iframe>Citas académicas (APA · BibTeX · CFF)
Cita APA
superdesigndev. (2026). treg security audit report (audit version 1) [Author version 0.11.0]. Skillstore. https://skillstore.io/skills/superdesigndev-treg/audits/1Cita BibTeX
@techreport{superdesigndev-superdesigndev-treg-2026,
author = {superdesigndev},
title = {treg security audit report (audit version 1)},
institution = {Skillstore},
year = {2026},
number = {1},
url = {https://skillstore.io/skills/superdesigndev-treg/audits/1},
note = {Author version 0.11.0}
}CITATION.cff
cff-version: 1.2.0
message: "If you use this Skill, cite its author and this versioned security audit report."
title: "treg security audit report (audit version 1)"
version: "0.11.0"
type: report
authors:
- name: "superdesigndev"
date-released: "2026-08-14"
url: "https://skillstore.io/skills/superdesigndev-treg/audits/1"
identifiers:
- type: other
value: "skillstore:superdesigndev-treg:audit:1"
description: "Skillstore immutable audit report identifier"
Puntuación de Skillstore
Por qué esta puntuación Confianza de la evidencia: MedioLo que puedes crear
Research live market data
Find and compare endpoints for rankings, backlinks, trends, advertising, or company enrichment before making approved calls.
Connect internal API accounts
Register an existing service credential and let authorized teammates call the API without receiving the raw secret.
Automate scoped agent tasks
Create a limited agent identity, allow selected tools, set daily caps, and review its call history.
Prueba estos prompts
Search treg for an endpoint that provides [data type]. Show required inputs, price, and reliability. Do not call it yet.
Compare treg providers for [task] using my available inputs. Rank them by compatibility, reliability, price, and recent success.
Prepare a treg call for [endpoint] with [inputs]. State the exact price and request confirmation before spending any balance.
Plan a treg integration for [service]. Use minimal scopes, read-only access, explicit tool allowlists, daily caps, and item-level secret consent.
Mejores prácticas
- Review endpoint inputs, observed reliability, price, and recent success before calling.
- Confirm every paid or state-changing action with the user immediately before execution.
- Use dedicated identities, minimal scopes, tool allowlists, daily caps, and audit logs.
Evitar
- Do not pipe a remote installer into a shell without verification.
- Do not grant blanket approval for every treg command.
- Do not scan or upload credentials without an exact preview and item-level consent.
Preguntas frecuentes
What does treg provide?
Does every call cost money?
Can treg access existing team APIs?
Does treg handle secrets?
Can treg change connected accounts?
What should users verify before installation?
Detalles del desarrollador
Autor
superdesigndevLicencia
MIT
Versión del autor
v0.11.0
Revisión de Skillstore
r1
Repositorio
https://github.com/superdesigndev/treg/tree/bc0c6111d1f25f802b3675a5d8ecf7267650bd9b/skills/tregRef.
8d471fa6bb01c43c43d332bf9105df157c067391
Actualidad del mantenimiento
15/8/2026
Uso
0 descargas · 0 vistas
Estructura de archivos
📄 SKILL.md