Skip to main content
在 Manus 中运行任何 Skill
一键导入

hookfrisk

星标0
分支0
更新时间2026年7月7日 13:36

Frisk your agent hooks for commands that auto-run on untrusted input before you ship them. Triggers automatically when you are about to report a coding task done and your diff added or changed a hook (or on /hookfrisk). A hook fires by itself, with no human in the loop — so a hook that pipes tool output or a file path into a shell, or runs curl | bash, is remote code execution on every trigger. hookfrisk reads only the changed hook definitions, flags the ones that run attacker-influenced input or unsandboxed commands, proposes the safe rewrite, and refuses to say "done" while an auto-firing hook can be turned against you.

安装

用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。

SKILL.md
readonly