13 packages matching “yottaskills”
@yottameta/yotta-skills
v0.19.6 · 1 day ago
YuanGe (元阁) - orchestration routing, inventory, and one-command installer for the YottaMeta skill family (zero dependencies, Node.js only).
No known vulnerabilities
@yottameta/yotta-security-audit
v0.2.3 · 4 days ago
Yuan'an (元安) — detects malicious patterns in AI skills (13 detector classes) and system security baselines (Windows/Linux); purely read-only, zero-dependency and disciplined. Triggers on security audit / skill security check / malicious detection / supply
No known vulnerabilities
@yottameta/yotta-verify-mcp
v0.4.2 · 3 days ago
YuanXinMCP (元信MCP) - the pre-install security scanner for Agent skills, exposed as a stdio MCP server: scan_skill (dir/package -> verdict + findings), generate_badge (audited badge), gate_check (CI gate), get_report (JSON/Markdown). Local offline static s
No known vulnerabilities
@yottameta/yotta-vetter
v0.2.3 · 19 days ago
Yuanshen (元审) — the security review protocol before installing any skill: a four-phase checklist (source → code → permissions → risk) + a lightweight checker, with deep-scan handoff to yotta-security-audit. Triggers before installing/evaluating any skill
No known vulnerabilities
@yottameta/yotta-present
v0.6.2 · 4 days ago
YuanCheng (元呈) — a universal result-presentation layer for AI agents: turn any AI output (JSON / Markdown / plain text) into a standard content object, pick a presentation form (conclusion card / table / checklist / prose / metric board / QA card / report
No known vulnerabilities
@yottameta/yotta-learn
v0.2.0 · 8 days ago
Yuanxi — a cross-agent learning-loop skill: captures mistakes, corrections and insights as reusable .learnings/ entries for later sessions and skill improvement. Triggers on command failure / user correction / a better approach / a missing capability / an
No known vulnerabilities
@yottameta/yotta-verify
v0.3.1 · 3 days ago
YuanXin (元信) — the pre-install security verifier for Agent skills: deterministic static scan (prompt injection + malicious patterns + SKILL.md integrity + permissions) that outputs a verdict and audited badges. Triggers before installing/evaluating any sk
No known vulnerabilities
@yottameta/yotta-security-testing
v0.3.0 · 8 days ago
YuanCe (元测) — a disciplined, authorization-first AI security-testing methodology: a four-stage (recon → discovery → verification → reporting) web security testing workflow on authorized targets (self-owned assets / SRC bug bounty / CTF / local labs), with
No known vulnerabilities
@yottameta/yotta-publish-guard
v0.4.1 · 4 days ago
YuanShou (元守) — a generic zero-dependency Python 3.8+ pre-publish release guard (defaults to YottaMeta ownership, customizable to any publishing organization): check (full / github / self modes, optional yotta-security-audit / yotta-vetter / yotta-verify
No known vulnerabilities
@yottameta/yotta-agent-hardening
v0.2.4 · 19 days ago
YuanSafe (元安全) — a defensive AI-agent hardening skill: static configuration-facing hardening scan of an agent's own runtime (installed skills, MCP servers, tool descriptions, permissions and data surfaces) across three domains — prompt-injection defense /
No known vulnerabilities
@yottameta/yotta-partner
v0.2.0 · 12 days ago
Yuanban (元伴) — a human-AI collaboration protocol skill: a repeatable collaboration unit with a context brief (background / goal / constraints / acceptance), plan-first gate, milestone delivery, verification, handover anchors and experience reuse. Triggers
No known vulnerabilities
@yottameta/yotta-prompt
v0.2.0 · 9 days ago
YuanYin — an intent-clarification & ecosystem-entry skill for AI agents: when a user types a vague phrase or a single word, it identifies the intent, offers 2-4 candidate directions, deep-dives into goal/scope/output, then routes to the matching YottaMeta
No known vulnerabilities
@yottameta/yotta-skill-creator
v0.1.2 · 3 days ago
YuanZao (元造) — a zero-dependency Python 3.8+ skill scaffold generator: validates naming (yotta- prefix / lowercase-hyphen / YuanX Chinese name / non-overwrite), renders a full release-compliant scaffold from an embedded template (SKILL.md, bilingual four-
No known vulnerabilities