用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
直接命令不会经过审查 Prompt;运行前请先检查来源。
npx skills add https://github.com/javimosch/supercli --skill landrun命令会保持在同一行。复制前请横向滚动并检查完整内容。
想先保存到本地?可下载 SkillsMP 当前能够提供的文件。
Use this skill when the user wants to search, create, read, or manage Notion pages and databases — search workspace, query databases, create pages, read/write page content as Markdown, manage blocks, users, and files.
Use this skill when the user wants to chat with LLMs from the terminal — OpenAI, Claude, Gemini, local models, RAG, and multi-turn conversations without leaving the shell.
Use this skill when the user wants static analysis for Kotlin code — detect code smells, complexity, style violations, and generate reports for CI pipelines.
基于 SOC 职业分类
正在显示 SKILL.md
| name | landrun |
| description | Use this skill when the user wants to sandbox a command with restricted filesystem or network access on Linux. |
Run Linux processes in a secure sandbox using Landlock kernel security. No root, no containers, no AppArmor configs.
landrun run ro — Run command with read-only directory accesslandrun run rw — Run command with read-write directory accesslandrun run rox — Run command with read-only + execute accesslandrun run network-restricted — Run command with TCP port restrictionslandrun run debug — Run with debug logginglandrun _ _ — Direct passthrough to landrun CLIgo install github.com/zouuup/landrun/cmd/landrun@latest
Requires: Linux kernel 5.13+ with Landlock enabled
# Read-only access to a directory
landrun --ro /home ls /home
# Read-write to a specific directory
landrun --rw /tmp/data touch /tmp/data/test.txt
# Read-only + execute (for running binaries)
landrun --rox /usr --ro /lib /usr/bin/bash
# Network restriction - only allow HTTPS
landrun --connect-tcp 443 curl https://example.com
# Debug mode for troubleshooting
landrun --log-level debug --rox /usr --ro /lib ls /usr
# Best-effort mode (graceful fallback on older kernels)
landrun --best-effort --rw /tmp command
| Flag | Description |
|---|---|
--ro <path> | Read-only access |
--rox <path> | Read-only + execute |
--rw <path> | Read-write access |
--rwx <path> | Read-write + execute |
--bind-tcp <port> | Allow binding to TCP port |
--connect-tcp <port> | Allow connecting to TCP port |
--env <var> | Pass environment variable |
--best-effort | Fallback on older kernels |
--unrestricted-network | Allow all network access |
--unrestricted-filesystem | Allow all filesystem access |
--add-exec | Auto-add binary to permissions |
--ldd | Auto-add required libraries |