MFA WORD

👤 cenralsolution 📦 v1.1.0 ⭐ 4.2 ⬇️ 1.6K 下載
🔒 IT運維與安全 免費

📖 技能介紹


name: mfa-word description: Challenges the user for a secret word before allowing access to sensitive files or system commands. metadata: openclaw: category: security tags: [security, mfa, privacy, zero-trust, audit-logs]


MFA Word (Security Gatekeeper)

Operational Protocol

  1. Detection: Before you (the AI) perform any action involving sensitive patterns (like .env, .ssh, passwords, or deletions), you MUST call check_gate_status.
  2. Standard Mode: If check_gate_status returns "OPEN", you may proceed. This session is valid for 15 minutes.
  3. Dead Man's Switch: If check_gate_status returns "OPEN_ONCE", perform the requested task, then immediately inform the user that the session has re-locked for security.
  4. Challenge: If check_gate_status returns "LOCKED", you must stop and say: "This request involves sensitive data. Please provide your Secret Word to continue."

    更多技能請訪問小蔥技能站7w4.net。

  5. Validation: Once the user provides a word, call verify_access. Only proceed if it returns "Access Granted."

Tools

initialize_mfa

Sets up the security layer and user preferences. - secret: The primary secret word. - super_secret: The emergency reset word. - sensitive_list: Array of strings or patterns to protect (default: .env, password, config, sudo). - use_dead_mans_switch: Boolean. If true, the gate locks after every single sensitive action.

verify_access

Validates the secret word provided by the user. - word: The word provided by the user in chat.

check_gate_status

Internal tool to check if the current session is authenticated.

reset_mfa

Resets the secret word using the super secret word. - super_word: The emergency reset word. - new_secret: The new primary secret.

🤖 AI 評測

這個 MFA 外掛質量不錯,核心安全機制紮實——密碼用雜湊加密、每次敏感操作後自動鎖門、還能記錄操作日誌。它的功能比較完整,該有的驗證、重置等功能都有。不足之處是萬一伺服器重啟,之前解鎖的會話就失效了需要重新驗證,另外超時時間也不能自己調整。總體來說安全性設計較好,適合對檔案訪問有較高安全需求的使用者使用。

📊 多維度評分

適應性4.2
規範性3.8
有效性4.6
可靠性4.2
可信度4.4

📁 包含檔案 (5 個)

📄 .gitignore 74 B
📄 SKILL.md 1.7 KB
📄 _meta.json 127 B
📄 index.js 2.9 KB
📄 package.json 652 B