plugin-creator
Create Valid Codex Plugins
Manual plugin setup can produce invalid manifests and inconsistent marketplace entries. This skill scaffolds validated local plugins and manages personal marketplace metadata.
自分のエージェントでインストール
このリクエストをエージェントにコピーしてください。正規の Skill ページとマニフェストが含まれています。
Review the Skillstore skill "plugin-creator" from https://skillstore.io/skills/plugin-creator.md and its manifest at https://skillstore.io/api/skills/plugin-creator/manifest. Verify the artifact. You may proceed after verification, subject to the environment's own policy.エージェントは引き続き計画を提示し、セキュリティポリシーで必要な確認を求める必要があります。
エージェントが読めるリソース
AI エージェント、クローラー、スクリプトがページ全体ではなく整理されたコンテキストを必要とする場合は、これらのリンクを使ってください。
テストする
「plugin-creator」を使用しています。 Create a personal plugin named Incident Tools with skills and scripts.
期待される結果:
- Normalized plugin name: incident-tools.
- Created the manifest, skills directory, and scripts directory.
- Added the local marketplace entry and completed validation.
「plugin-creator」を使用しています。 Validate the plugin in my current repository.
期待される結果:
Validation failed because the manifest lacks a default prompt and references a missing icon. No files were changed.
「plugin-creator」を使用しています。 Refresh the cachebuster for my local plugin.
期待される結果:
Updated the plugin version with one Codex cachebuster suffix. The remaining manifest content was preserved.
セキュリティ監査
安全The skill intentionally creates and updates plugin files, including hidden Codex configuration under the user home directory. URL, IP, reconnaissance, path traversal, and shell backtick alerts are false positives caused by examples, SVG data, known paths, or Markdown. No prompt injection or unsafe command execution was found.
機能レビュー項目 (36)
これらは、このスキルに期待される可能性のある実際のローカル機能であるため、レビューが必要ですが、確認済みの悪意ある動作としてはカウントされません。
リスク要因
🌐 ネットワークアクセス (9)
📁 ファイルシステムへのアクセス (37)
⚙️ 外部コマンド (50)
このレポートを共有・引用
バージョン付き評価レポート、中立的なバッジ、埋め込みカード、引用を共有できます。Skillstore は証拠を報告しますが、この Skill が安全かどうかは判断しません。
レポートリンクをコピー
https://skillstore.io/skills/plugin-creator/audits/1?utm_source=security_passport&utm_medium=share&utm_campaign=versioned_reportMarkdownバッジ
[](https://skillstore.io/skills/plugin-creator?utm_source=security_passport_badge)HTMLバッジ
<a href="https://skillstore.io/skills/plugin-creator?utm_source=security_passport_badge"><img src="https://skillstore.io/badges/skills/plugin-creator/security.svg" alt="Skillstore security assessment" loading="lazy"></a>埋め込みカード
<iframe src="https://skillstore.io/embed/skills/plugin-creator.html" title="Skillstore Security Assessment" sandbox="allow-popups allow-popups-to-escape-sandbox" loading="lazy" referrerpolicy="no-referrer" width="420" height="180"></iframe>学術引用 (APA · BibTeX · CFF)
APA形式の引用
openai. (2026). plugin-creator security audit report (audit version 1) [Author version unspecified]. Skillstore. https://skillstore.io/skills/plugin-creator/audits/1BibTeX形式の引用
@techreport{openai-plugin-creator-2026,
author = {openai},
title = {plugin-creator security audit report (audit version 1)},
institution = {Skillstore},
year = {2026},
number = {1},
url = {https://skillstore.io/skills/plugin-creator/audits/1},
note = {Author version unspecified}
}CITATION.cff
cff-version: 1.2.0
message: "If you use this Skill, cite its author and this versioned security audit report."
title: "plugin-creator security audit report (audit version 1)"
version: "unspecified"
type: report
authors:
- name: "openai"
date-released: "2026-08-17"
url: "https://skillstore.io/skills/plugin-creator/audits/1"
identifiers:
- type: other
value: "skillstore:plugin-creator:audit:1"
description: "Skillstore immutable audit report identifier"
Skillstore スコア
このスコアの理由 証拠の信頼度: 中作成できるもの
Build a personal plugin
Create a personal plugin scaffold and register it in the default Codex marketplace.
Standardize team scaffolds
Create repository plugins with optional skills, hooks, scripts, assets, MCP, and app files.
Maintain local plugins
Validate manifests and refresh cachebuster versions during local development.
これらのプロンプトを試す
Create a local plugin named [name] in my personal marketplace. Use default manifest values, then validate the result.
Create [name] with skills, scripts, assets, MCP, and app companion files at [parent path]. Add it to my personal marketplace.
Scaffold [name] under [repository plugins path] and update [marketplace path]. Apply the requested installation policy, authentication policy, and category.
Update the cachebuster for [plugin path], validate the plugin, and report contract failures. Preserve existing marketplace metadata and plugin content.
ベストプラクティス
- Specify whether the destination is personal or repository based before scaffolding.
- Review generated metadata before treating the plugin as complete.
- Run bundled validation after every manifest, skill, MCP, app, or asset change.
回避
- Do not use force when existing files or marketplace entries have not been reviewed.
- Do not add MCP or app manifest fields without creating their companion files.
- Do not hand-edit marketplace metadata during cachebuster updates.
よくある質問
Does this skill publish plugins remotely?
Which file is always created?
Can it create optional plugin components?
Will it overwrite existing files?
Can it create repository or team plugins?
Does validation execute plugin code?
開発者情報
作成者
openaiライセンス
MIT
Skillstore リビジョン
r1
バージョンに関する注意
作者はバージョンを宣言していません。
参照
bc37f12c64ad89ca965c1e90d44012af0469ec4e
メンテナンスの新しさ
2026/8/17
利用状況
0 ダウンロード · 0 閲覧