caveman-setup
Connect your app to Caveman measurement
LLM requests can be difficult to measure across SDKs and providers. This skill identifies live callsites, routes them through Caveman, and verifies one measured request.
Остановитесь и запросите подтверждение перед установкой.
Проверьте план и получите явное согласие пользователя перед изменением файлов.
Установить с помощью моего Агента
Скопируйте этот запрос в своего Агента. Он содержит каноническую страницу Skill и манифест.
Review the Skillstore skill "caveman-setup" from https://skillstore.io/skills/juliusbrussee-caveman-setup.md and its manifest at https://skillstore.io/api/skills/juliusbrussee-caveman-setup/manifest. Verify the artifact. Stop and obtain explicit user consent before installing or changing files.Ваш Агент по-прежнему должен показать план и запросить все подтверждения, требуемые политикой безопасности.
Ресурсы для AI-агентов
Используйте эти ссылки, когда AI-агенту, crawler или script нужен чистый контекст вместо полной страницы.
Протестировать
Использование «caveman-setup». Set up measurement for the repository.
Ожидаемый результат:
- Found two LLM callsites in the API service.
- Added gateway URL and gateway key references through the existing environment configuration.
- Verification is ready and requires approval before sending a provider request.
Использование «caveman-setup». Check whether the gateway integration succeeded.
Ожидаемый результат:
- Verification returned HTTP 200.
- The response included usage details for the configured model.
- Record mode is enabled and no optimization was configured.
Аудит безопасности
Высокий рискMost static findings are false positives caused by Markdown formatting, configuration examples, and documented environment-variable use. The skill intentionally routes LLM requests through a third-party gateway and can forward provider credentials in byok mode. It also directs agents to send a billable verification request without obtaining approval at execution time.
Подтверждённые проблемы безопасности (2)
Пункты проверки возможностей (10)
Это реальные локальные возможности, которые могут ожидаться для этого навыка, поэтому они требуют проверки, но не считаются подтверждённым вредоносным поведением.
Факторы риска
⚙️ Внешние команды (50)
🌐 Доступ к сети (4)
🔑 Переменные окружения (26)
Поделиться и цитировать этот отчет
Делитесь версионным отчетом об оценке, нейтральным значком, встраиваемой карточкой и цитатами. Skillstore публикует доказательства, не решая, безопасен ли этот Skill.
Копировать ссылку на отчёт
https://skillstore.io/skills/juliusbrussee-caveman-setup/audits/9?utm_source=security_passport&utm_medium=share&utm_campaign=versioned_reportЗначок Markdown
[](https://skillstore.io/skills/juliusbrussee-caveman-setup?utm_source=security_passport_badge)Значок HTML
<a href="https://skillstore.io/skills/juliusbrussee-caveman-setup?utm_source=security_passport_badge"><img src="https://skillstore.io/badges/skills/juliusbrussee-caveman-setup/security.svg" alt="Skillstore security assessment" loading="lazy"></a>Встраиваемая карточка
<iframe src="https://skillstore.io/embed/skills/juliusbrussee-caveman-setup.html" title="Skillstore Security Assessment" sandbox="allow-popups allow-popups-to-escape-sandbox" loading="lazy" referrerpolicy="no-referrer" width="420" height="180"></iframe>Академические ссылки (APA · BibTeX · CFF)
Цитата APA
juliusbrussee. (2026). caveman-setup security audit report (audit version 9) [Author version unspecified]. Skillstore. https://skillstore.io/skills/juliusbrussee-caveman-setup/audits/9Цитата BibTeX
@techreport{juliusbrussee-juliusbrussee-caveman-setup-2026,
author = {juliusbrussee},
title = {caveman-setup security audit report (audit version 9)},
institution = {Skillstore},
year = {2026},
number = {9},
url = {https://skillstore.io/skills/juliusbrussee-caveman-setup/audits/9},
note = {Author version unspecified}
}CITATION.cff
cff-version: 1.2.0
message: "If you use this Skill, cite its author and this versioned security audit report."
title: "caveman-setup security audit report (audit version 9)"
version: "unspecified"
type: report
authors:
- name: "juliusbrussee"
date-released: "2026-09-08"
url: "https://skillstore.io/skills/juliusbrussee-caveman-setup/audits/9"
identifiers:
- type: other
value: "skillstore:juliusbrussee-caveman-setup:audit:9"
description: "Skillstore immutable audit report identifier"
Оценка Skillstore
Почему такая оценка Достоверность доказательств: СреднийЧто вы можете построить
Measure a production AI service
Route existing application LLM traffic through the gateway to capture request usage and spend.
Standardize SDK gateway routing
Apply documented gateway configuration to OpenAI, Anthropic, or framework-based LLM clients.
Verify observability onboarding
Send one minimal request and confirm that the gateway records usage before wider rollout.
Попробуйте эти промпты
Set up Caveman measurement for this repository. First identify all live LLM callsites and show me the planned changes.
Configure the existing OpenAI SDK client to use the Caveman gateway. Use environment variables and preserve current provider behavior.
Review this repository for LLM callsites and propose the minimal Caveman gateway integration. Do not make unrelated changes.
After configuring Caveman, show the exact verification request and wait for my approval before sending any billable traffic.
Лучшие практики
- Review the proposed file changes before applying them.
- Store gateway and provider credentials only in ignored environment files or a managed secret store.
- Confirm the target gateway and approve the billable verification request before it runs.
Избегать
- Do not hardcode gateway or provider credentials in application source.
- Do not route traffic to an unverified gateway URL.
- Do not report successful measurement without an observed verification result.
Часто задаваемые вопросы
What does this skill configure?
Does it change model output?
Which client libraries are covered?
Are credentials required?
Does verification cost money?
Should I approve network activity first?
Сведения для разработчиков
Автор
juliusbrusseeЛицензия
MIT
Ревизия Skillstore
r1
Примечание о версии
Автор не указал версию.
Репозиторий
https://github.com/juliusbrussee/caveman/tree/15581d14007fd01fb3f132016741962f34936ca2/skills/caveman-setupСсылка
0acc95b40c367e2016e824a72b27b83b507ef020
Актуальность поддержки
08.09.2026
Использование
0 загрузок · 0 просмотров
Структура файлов
📄 SKILL.md