dingtalk_channel_connect
使用可视浏览器自动完成 CoPaw 的钉钉频道接入。适用于用户提到钉钉、DingTalk、开发者后台、Client ID、Client Secret、机器人、Stream 模式、绑定或配置 channel 的场景;支持遇到登录页时暂停,等待用户登录后继续。
Supply asset profile
Coding and developer agents
Code review, repo analysis, testing, CI, GitHub, DevOps, and developer workflow skills.
Scenario
Testing and QA
I need my agent to test a web app, reproduce bugs, and verify fixes.
Agent fit
Claude Code + Browser agents + CLI
Codex, Claude Code, Cursor, CLI, or custom agents.
Install
Ready
npx skills add hyqibot/token-free-openclaw --skill dingtalk_channel_connect
Maintenance
fresh
1d since push
Risk
Needs review
Permission surface may require sandboxing
GitHub quality
116
67/100 Quality · 67/100 Trust
Coverage tags
Review notes
Permission surface may require sandboxing · SKILL.md 未明确提及许可证信息,但仓库根目录已声明 Apache-2.0,建议在文档中补充以增强合规透明度。
Agent adoption scorecard
Trust, audit, and install readiness at a glance
These scores combine public repository metadata, OpenAgentSkill review signals, maintenance freshness, and install readiness. They are a shortlist signal, not a replacement for human review.
Quality
PromisingUseful candidate, but compare it with alternatives before adopting.
Trust
Do not auto-installTrust Score v5 found insufficient evidence for agent installation. Treat this as discovery material, not an executable recommendation.
Audit
Needs reviewA machine-readable review of install readiness, security metadata, maintenance, and adoption risk.
OpenAgentSkill Trust Score v5
Human review before install
Choose a stronger alternative or inspect the source manually before any install attempt.
Stars
116 GitHub stars
Repo activity
116 stars, 32 forks
Maintenance
1d since push
License
Apache-2.0
Install
npx skills add hyqibot/token-free-openclaw --skill dingtalk_channel_connect
Install safety
credential-bearing install command, standard package or runtime install path
Permission surface
secrets or environment access, network or browser access
Agent outcomes
No agent outcome data yet
Docs
Usable metadata, review docs
Risk summary
Review before production
- SKILL.md 未明确提及许可证信息,但仓库根目录已声明 Apache-2.0,建议在文档中补充以增强合规透明度。
- Quality score needs review
- Permission surface needs review: secrets or environment access, network or browser access
- Stars/forks activity: 116 stars, 32 forks; issue activity unavailable in current metadata
Install readiness
Install path available
- Install path is available
- Repository evidence is available
- License is declared
- No Agent Proven outcome evidence yet
Agent-readable metadata
Machine-readable decision data for this skill.
Use this block or the embedded JSON to decide whether an agent should install this skill, choose an alternative, or ask for human review first.
Suited tasks
- Browser automation workflows
- Claude Code teams
- builders willing to evaluate younger projects
- Navigate pages
Suited agents
Install decision
- Command
- npx skills add hyqibot/token-free-openclaw --skill dingtalk_channel_connect
- Policy
- review
- Human review
- yes
Trust and risk
- Trust
- 59/100
- Audit
- 75/100
- Risk level
- Needs review
Outcome loop
- Endpoint
- /api/agent/outcome
- Event ID
- resolve
- Outcomes
- 5
Install command
npx skills add hyqibot/token-free-openclaw --skill dingtalk_channel_connectDo not use when
- teams that need a vendor-supported SLA
- production agents without a repository review
- SKILL.md 未明确提及许可证信息,但仓库根目录已声明 Apache-2.0,建议在文档中补充以增强合规透明度。
- High-risk permission hints: Secrets or environment access
- Permission surface may require sandboxing
Agent safety v2
47/100 · Avoid automatic install
Sparse or mixed signals. Useful for discovery, but not for autonomous installation.
Test manually in an isolated workspace and compare against safer alternatives.
medium
Browser automation
Skill may drive a browser or interact with web pages.
medium
Network access
Skill likely fetches remote pages, APIs, repositories, or external services.
high
Secrets or environment access
Skill metadata references credentials, tokens, environment variables, or secret-bearing workflows.
- High-risk permission hints: Secrets or environment access
- Permission surface may require sandboxing
Install targets
Install this skill in your agent workflow
Use the public install endpoint to fetch the command, safety checklist, target prompts, and canonical links for this skill.
OpenAgentSkill CLI
Resolve policy, run the source installer safely, and report a verified install receipt.
$ npx --yes https://github.com/Leon-Drq/openagentskill/releases/download/cli-v0.2.1/openagentskill-0.2.1.tgz install hyqibot-dingtalk-channel-connectAgent resolve plan
Let an agent verify fit before installing.
The Resolve API returns the selected skill, alternatives, safety policy, audit notes, install target, and copy-paste prompt an agent can follow without scraping this page.
Open JSON
/api/agent/resolve?task=Use%20dingtalk_channel_connect%20for%20an%20agent%20workflow&agent=codex&max_risk=medium
Resolve text
/api/agent/resolve?task=Use%20dingtalk_channel_connect%20for%20an%20agent%20workflow&agent=codex&max_risk=medium&format=text
Install handoff
/api/skills/hyqibot-dingtalk-channel-connect/install
Agent should check
- Task fit and alternatives from Resolve API.
- Audit score, trust score, and safety policy warnings.
- Install target compatibility for Codex, Claude Code, Cursor, or CLI.
Copy prompt
Task: Use dingtalk_channel_connect in this workspace.
Resolve first: https://www.openagentskill.com/api/agent/resolve?task=Use%20dingtalk_channel_connect%20for%20an%20agent%20workflow&agent=codex&max_risk=medium
Review install handoff: https://www.openagentskill.com/api/skills/hyqibot-dingtalk-channel-connect/install
Install command: npx skills add hyqibot/token-free-openclaw --skill dingtalk_channel_connect
Before running it, summarize audit warnings, required permissions, and the fallback skill if install is risky.Agent handoff
Give an agent the install path, not another directory page.
Use the public install endpoint to fetch the command, safety checklist, target prompts, and canonical links for this skill.
Install handoff
/api/skills/hyqibot-dingtalk-channel-connect/install
LLM text format
/api/skills/hyqibot-dingtalk-channel-connect/install?format=text
Find alternatives
/api/skills/search?q=dingtalk_channel_connect&limit=3
Agent prompt
Use dingtalk_channel_connect for this task. Review https://www.openagentskill.com/api/skills/hyqibot-dingtalk-channel-connect/install, then install with: npx skills add hyqibot/token-free-openclaw --skill dingtalk_channel_connectRegistry metadata
Agent-readable profile for automatic skill selection.
This page exposes the same decision, trust, audit, use-case, and install signals through the Registry API, so agents can rank this skill without scraping the UI.
Manifest
/api/registry/manifest/hyqibot-dingtalk-channel-connect
LLM text
/api/registry/manifest/hyqibot-dingtalk-channel-connect?format=text
Install alias
/api/registry/install/hyqibot-dingtalk-channel-connect
Recommend
/api/registry/recommend?task=Use%20dingtalk_channel_connect%20in%20an%20agent%20workflow&limit=3
Agent fit
Browser automation
Platforms
Claude Code, Browser agents
Audit report
Needs review · 75/100
A machine-readable review of install readiness, security metadata, maintenance, and adoption risk.
Agent decision cockpit
Fallback candidate for Browser automation
Prototype with this skill first; keep a fallback candidate ready.
Role in stack
Fallback candidate
Primary fit
Browser automation
Trust label
Prototype first
Install path
Command ready
Use when
- Browser automation workflows
- Claude Code teams
- builders willing to evaluate younger projects
Evidence
- recent repository activity
- install command or GitHub repo available
- 67/100 quality profile
- 1 OpenAgentSkill engagement events
review first
- SKILL.md 未明确提及许可证信息,但仓库根目录已声明 Apache-2.0,建议在文档中补充以增强合规透明度。
Implementation path
- 1Install it in a sandbox agent and run one Browser automation task end to end.
- 2Compare output quality, latency, and failure behavior against at least one alternative.
- 3Promote it into production only after reviewing repository permissions, license, and maintenance signals.
Trust profile
Do not auto-install
Trust Score v5 found insufficient evidence for agent installation. Treat this as discovery material, not an executable recommendation.
GitHub adoption
INFO116 GitHub stars
Stars/forks activity
CHECK116 stars, 32 forks; issue activity unavailable in current metadata
Recent maintenance
PASS1d since push
License clarity
PASSApache-2.0
Good signals
- AI review approved
- Install path is available
- Repository evidence is available
- Recently maintained repository
- Install command has no obvious high-risk pattern
- Outcome loop is ready but needs first real agent run
Review before install
- SKILL.md 未明确提及许可证信息,但仓库根目录已声明 Apache-2.0,建议在文档中补充以增强合规透明度。
- Quality score needs review
- Permission surface needs review: secrets or environment access, network or browser access
- Stars/forks activity: 116 stars, 32 forks; issue activity unavailable in current metadata
- Permission surface: secrets or environment access, network or browser access
- No real agent outcome reports yet
- Human review required before unattended installation
Recommended action
Choose a stronger alternative or inspect the source manually before any install attempt.
Quality profile
Promising candidate for agent workflows
Useful candidate, but compare it with alternatives before adopting.
Workflow fit
Use this skill in these scenarios
Operate web apps
Browser automation
I need my agent to control a browser, fill forms, and verify web app workflows.
Reduce risk
Security and compliance
I need my agent to scan a project for security risks and summarize what needs attention.
Operate local tools
Local desktop
I need my agent to operate local files and desktop apps in a repeatable workflow.
Workflow fit
Add it to a complete workflow
Operate and verify web apps
Browser QA agent
A workflow for agents that navigate products, fill forms, take screenshots, and verify real user flows across web applications.
Scrape, clean, and reuse web data
Web data pipeline
A practical workflow for agents that crawl public pages, extract clean content, normalize data, and hand it to downstream research or RAG workflows.
Design, build, test, and ship interfaces
Frontend and UI
A practical workflow for agents that turn product briefs or Figma designs into polished frontend code, review the result, test it in a browser, and prepare a safe deployment.
Alternative shortlist
Compare before you install
Similar skills that may fit this task.
Wazuh
Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads.
Maigret
🕵️♂️ Collect a dossier on a person by username from 3000+ sites
Nuclei
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.
Infisical
Infisical is the open-source platform for secrets, certificates, and privileged access management.
Overview
--- name: dingtalk_channel_connect description: "使用可视浏览器自动完成 CoPaw 的钉钉频道接入。适用于用户提到钉钉、DingTalk、开发者后台、Client ID、Client Secret、机器人、Stream 模式、绑定或配置 channel 的场景;支持遇到登录页时暂停,等待用户登录后继续。" metadata: builtin_skill_version: "1.1" copaw: emoji: "🤖" requires: {} ---
# 钉钉 Channel 自动连接(可视浏览器)
此 skill 用于通过可视浏览器自动化完成钉钉应用创建与 CoPaw channel 绑定。
## 强制规则
1. 必须使用可视浏览器模式启动:
```json {"action": "start", "headed": true} ```
2. 遇到登录关卡必须暂停: - 若页面出现登录界面(如 `登录`、扫码登录、手机号/密码登录),立即停止自动操作。 - 明确提示用户先手动登录,再等待用户回复“登录好了/继续”。 - 未收到用户确认前,不得继续执行后续步骤。
3. 任何应用配置变更都必须新建版本并发布后才生效: - 配置完机器人相关信息后**一定要发布机器人** - 不论是新建应用还是修改应用信息(名称、描述、图标、机器人配置等),最终都**必须执行“创建新版本 + 发布”**。 - 若未完成发布,不得宣称配置已生效。
## 执行前显著确认(必须先做)
在开始自动化点击前,先向用户发起一次“配置确认”,明确告知可自定义项、图片规范、默认值。建议使用如下结构化确认:
1. 让用户可自定义以下字段: - 应用名称 - 应用描述 - 机器人图标图片链接或本地路径 - 机器人消息预览图链接或本地路径
2. 明确告知图片规范(显著提示): - 机器人图标:仅支持 JPG/PNG,`240*240px` 以上,`1:1`,`2MB` 以内,无圆角。 - 机器人消息预览图:格式 `png/jpeg/jpg`,不超过 `2MB`。
3. 明确告知默认值(用户不指定时自动采用): - 应用名称:`CoPaw` - 应用描述:`Your personal assistant` - 机器人图标:`https://img.alicdn.com/imgextra/i4/O1CN01M0iyHF1FVNzM9qjC0_!!6000000000492-2-tps-254-254.png` - 机器人消息预览图:`https://img.alicdn.com/imgextra/i4/O1CN01M0iyHF1FVNzM9qjC0_!!6000000000492-2-tps-254-254.png`
4. 若用户未给任何自定义值,必须先明确回复: - “将全部采用默认设置(CoPaw / Your personal assistant / 默认图片)后继续执行。”
## 图片上传策略(link/path 都支持)
1. 若用户提供本地路径,直接用于上传。 2. 若用户提供图片 link,先下载到本地临时文件,再执行上传。 3. 上传动作顺序必须是: - 先点击页面上传入口(触发 chooser) - 再调用 `file_upload` 传入本地路径数组(`paths_json`) 4. 若上传报错且判断为图片规格不符合(尺寸、比例、大小、格式): - 立即暂停自动化 - 明确让用户手动上传符合规范的图片 - 用户确认“已上传/继续”后,从当前步骤继续后续流程
### 上传动作实战经验
1. `file_upload` 的 `paths_json` 必须是“JSON 字符串数组”,注意转义:
```json { "action": "file_upload", "paths_json": "[\"xxx.png\"]", "frame_selector": "iframe[src*=\"/fe/app?isHideOuterFrame=true\"]" } ```
2. 若页面在 iframe 内,建议优先带上 `frame_selector`,否则可能出现找不到上传控件或 chooser 未触发。
3. 上传前必须先点击上传入口;若直接 `file_upload` 会报: - `No chooser. Click upload then file_upload.`
4. 机器人图标区域的常见结构特征可用于定位(示例): - `text: "* 机器人图标"` - `button: "使用应用图标"` - `button: "avatar"`(通常内部有 `img "avatar"`)
5. 当 snapshot 中同时出现“使用应用图标”和“avatar”时,优先点击 `avatar` 按钮触发上传,再执行 `file_upload`。
## 自动化流程
### 步骤 1:打开钉钉开发者后台
1. 可视模式启动浏览器(`headed: true`) 2. 打开 `https://open-dev.dingtalk.com/` 3. 调用 `snapshot` 判断是否需要登录
若需要登录,使用如下话术暂停:
> 检测到需要登录钉钉开发者后台。我已暂停自动操作,请先在弹出的浏览器中完成登录。完成后回复“继续”,我再从当前页面接着执行。
### 步骤 2:创建企业内部应用
用户确认登录后继续:
1. 进入创建路径: - 应用开发 -> 企业内部应用 -> 钉钉应用 -> 创建应用 2. 填写应用信息(优先使用用户自定义,否则使用默认值): - 应用名称:默认 `CoPaw` - 应用描述:默认 `Your personal assistant` 3. 保存并创建应用
若页面文案或结构与预期不一致,重新 `snapshot`,按可见文本语义重新定位元素。
### 步骤 3:添加机器人能力并发布
1. 点击**应用能力**中的**添加应用能力**,找到**机器人**并添加 2. 将**机器人配置**右侧的switch按钮切换为打开 3. 填写**机器人名称**,**机器人简介**和**机器人描述** 4. 上传**机器人图标**(用户自定义或默认图): - 点击机器人图标下面的图片 - 默认图链接:`https://img.alicdn.com/imgextra/i4/O1CN01M0iyHF1FVNzM9qjC0_!!6000000000492-2-tps-254-254.png` - 若为 link,先下载到本地再上传 - 若提示图片不合规,暂停并让用户手动上传合规图片后继续 5. 上传**机器人消息预览图**(用户自定义或默认图): - 点击机器人消息预览图下面的图片 - 默认图链接:`https://img.alicdn.com/imgextra/i4/O1CN01M0iyHF1FVNzM9qjC0_!!6000000000492-2-tps-254-254.png` - 若为 link,先下载到本地再上传 - 若提示图片不合规,暂停并让用户手动上传合规图片后继续 6. 确认消息接收模式设置为 `Stream 模式` 7. 选择**发布**,此时会有进一步弹出的确认页面,选择发布。注意:**一定要发布机器人**之后再进行下一步
### 步骤 4:创建版本并发布
1. 打开 `应用发布 -> 版本管理与发布` 2. 创建新版本(每次配置变更后都要创建) 3. 填写版本描述,应用可见范围选择全部员工 4. 按页面提示完成发布,此时会有新的弹窗出现,选择确认发布 5. 只有看到发布成功状态,才可继续执行后续步骤/给用户“已生效”结论
### 步骤 5:获取凭证
1. 打开 `基础信息 -> 凭证与基础信息` 2. 告知用户`Client ID`(AppKey)和`Client Secret`(AppSecret)在该页面上。不主动进行修改,引导用户自行绑定
## CoPaw 绑定方式
拿到凭证后,引导用户选择以下任一方式:
1. 控制台前端配置: - CoPaw console 中进入 `控制 -> 频道 -> DingTalk` - 填入 `Client ID` 与 `Client Secret`
2. 配置文件方式:
```json "dingtalk": { "enabled": true, "bot_prefix": "[BOT]", "client_id": "你的 Client ID", "client_secret": "你的 Client Secret" } ```
路径:`~/.copaw/config.json`,位于 `channels.dingtalk` 下。
### 凭证交付要求(强制)
1. agent 只负责引导用户进入凭证页、获取并展示 `Client ID` 与真实 `Client Secret`。 2. agent 不主动改 `console` 配置、不主动改 `~/.copaw/config.json`。 3. 必须提示用户按以下两种方式之一手动填写: - 控制台前端:`控制 -> 频道 -> DingTalk` - 配置文件:编辑 `~/.copaw/config.json` 的 `channels.dingtalk` 字段
## Browser 工具调用模式
默认按以下顺序执行:
1. `start` with `headed: true` 2. `open` 3. `snapshot` 4. `click` / `type` / `select_option` / `press_key` as needed 5. frequent `snapshot` after page transitions 6. `stop` when done
## 稳定性与恢复策略
- 优先使用最新 `snapshot` 的 `ref`;仅在必要时使用 `selector`。 - 每次关键点击或跳转后,使用短等待(`wait_for`)并立即重新 `snapshot`。 - 若中途会话失效或要求重新登录,必须再次暂停,待用户登录后从当前步骤继续。 - 若因租户权限、管理员审批等阻塞自动化,明确说明卡点,并请用户手动完成该步骤后再续跑。
Technical details
- Version
- 1.0.0
- License
- Apache-2.0
- Last updated
- Aug 21, 2026
- Published
- Aug 21, 2026
Decision snapshot
Fallback candidate
recent repository activity
Audit
Install review
Install and adoption review
- Security
- 73/100
- Maintenance
- 100/100
- Install
- 92/100
Agent-proven evidence
Agent-proven evidence
Outcome reports after resolve, review, install, and one narrow run.
- Success rate
- —
- Recent failure
- —
- Outcomes
- 0
- Output quality
- —
- Failed
- 0
- Not relevant
- 0
- Installs
- 0
- Risk blocked
- 0
- Setup needed
- 0
- Production
- 0
No agent outcome data yet. The first agent run can report success, setup needs, risk blocks, failure, or not-relevant through /api/agent/outcome.
Install
Add to agent workflow
Free and open source. Review the report before installing into production agents.
Growth loop
Share kit
Scenario-led draft for dingtalk_channel_connect, ready for a manual X post.
dingtalk_channel_connect: 使用可视浏览器自动完成 CoPaw 的钉钉频道接入。适用于用户提到钉钉、DingTalk、开发者后台、Client ID、Client Secret、机器人、Stream 模式、绑定或配... 116 stars https://www.openagentskill.com/skills/hyqibot-dingtalk-channel-connect?ref=x
Optional reply with install command
Listing + install path for dingtalk_channel_connect: https://www.openagentskill.com/skills/hyqibot-dingtalk-channel-connect?ref=x Install: npx skills add hyqibot/token-free-openclaw --skill dingtalk_channel_connect
Listing source
Registry indexed
This listing was indexed from public sources and is not marked official until a maintainer claim is approved.
- Creator
- hyqibot
- Indexed by
- OpenAgentSkill community index
Attribution links to the public repository or creator profile. Creators can claim the listing to update ownership signals.
Claim this skillOwner claim
Claim this skill listing
This Registry indexed listing is attributed to hyqibot but is not marked official yet. Claim it to add a verified owner signal and make future launch, install, and audit updates easier to trust.
Creator backlink kit
Add the evidence badges to your README
Show the canonical listing, current trust and audit signals, and real Agent-Proven evidence where developers evaluate the repository.
[](https://www.openagentskill.com/skills/hyqibot-dingtalk-channel-connect)
[](https://www.openagentskill.com/skills/hyqibot-dingtalk-channel-connect)
[](https://www.openagentskill.com/skills/hyqibot-dingtalk-channel-connect/audit)
[](https://www.openagentskill.com/skills/hyqibot-dingtalk-channel-connect)Author
hyqibot
@hyqibot
Tags
Platform fit
Health signals
- GitHub stars
- 116
- Quality score
- 38/100
- Last GitHub push
- Aug 21, 2026
- Framework hints
- Unknown
- OpenAgentSkill views
- 1
- Install copies
- 0
- Outbound clicks
- 0
Community signal
Share whether this skill looks useful for your agent workflow. Aggregated feedback improves rankings over time.
Trust & safety
Do not auto-install
- GitHub adoption116 GitHub starsINFO
- Stars/forks activity116 stars, 32 forks; issue activity unavailable in current metadataCHECK
- Recent maintenance1d since pushPASS
- License clarityApache-2.0PASS
- README/SKILL.md completenessPublic metadata needs stronger README/SKILL.md contextINFO
- Dependency/runtime riskcredential or environment access, network or browser surfaceINFO
Related skills
Wazuh
Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads.
16.3K StarsMaigret
🕵️♂️ Collect a dossier on a person by username from 3000+ sites
32.9K StarsNuclei
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.
29.2K StarsInfisical
Infisical is the open-source platform for secrets, certificates, and privileged access management.
27.4K Stars