Agent skill

Ezviz Device Config

by LeoYeAI in LeoYeAI/openclaw-master-skills

萤石设备配置技能。支持 9 个设备配置 API,包括布防/撤防、镜头遮蔽、全天录像、移动侦测灵敏度等. An agent skill from LeoYeAI/openclaw-master-skills.

MITAuto-check: notes

Install Ezviz Device Config

skills CLI
$ npx skills add LeoYeAI/openclaw-master-skills --skill ezviz-device-config -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install LeoYeAI/openclaw-master-skills ezviz-device-config --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/LeoYeAI/openclaw-master-skills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/hsa-test4 .claude/skills/ezviz-device-config && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
ezviz-device-config
GitHub stars
2.2k
Token cost
~3.9k tokens
SKILL.md length
713 words
Files
5 (incl. scripts, references)
Skills in repo
1,235
Repo updated
First seen
Licence
MIT

At a glance

萤石设备配置技能。支持 9 个设备配置 API,包括布防/撤防、镜头遮蔽、全天录像、移动侦测灵敏度等. An agent skill from LeoYeAI/openclaw-master-skills.

  • Works in 5 steps: 使用最小权限凭证 → 环境变量安全 → 禁用缓存(高安全场景) → …
  • : 需要远程配置萤石设备参数、修改设备布防状态、调整设备功能开关
  • SKILL.md covers ⚠️ 安全警告 (安装前必读), 快速开始, Channels 配置(推荐) and 工作流程, plus 12 more sections
  • Runs Python scripts from its folder; calls python3, curl and pip; reaches openai.ys7.com and open.ys7.com; needs EZVIZ_APP_KEY and EZVIZ_APP_SECRET

What it does

Ezviz Device Config is an agent skill from LeoYeAI/openclaw-master-skills. 萤石设备配置技能。支持 9 个设备配置 API,包括布防/撤防、镜头遮蔽、全天录像、移动侦测灵敏度等。 Use when: 需要远程配置萤石设备参数、修改设备布防状态、调整设备功能开关。 ⚠️ 安全要求:必须设置 EZVIZAPPKEY 和 EZVIZAPPSECRET 环境变量,使用最小权限凭证。

Its SKILL.md is about 3.9k tokens, which your agent loads only when the skill is triggered. The skill folder holds 7 other files, including scripts and reference files (for example `_meta.json`, `lib/token_manager.py` and `references/api-mapping.md`).

The repository describes itself as: 🧠 Curated collection of 1209+ best OpenClaw skills — weekly updated by MyClaw.ai. The licence is MIT.

When your agent uses it

  • : 需要远程配置萤石设备参数、修改设备布防状态、调整设备功能开关

Example prompts

  • “/ezviz-device-config”

Requirements

  • Python 3
  • A credential in EZVIZ_APP_KEY
  • A credential in EZVIZ_APP_SECRET

Workflow steps

5 steps, taken from the step headings in SKILL.md.

  1. 使用最小权限凭证
  2. 环境变量安全
  3. 禁用缓存(高安全场景)
  4. 定期清理缓存
  5. 配置文件扫描说明

What it can do on your machine

Read from SKILL.md and the folder at commit e5199b5. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Ships 1 file in scripts/ (Python), which the agent can run.

    Shell commands in SKILL.md call:

    • python3
    • curl
    • pip

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Hosts in commands or code, which the agent is likely to contact:

    • openai.ys7.com
    • open.ys7.com

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names these keys or tokens, usually read from environment variables:

    • EZVIZ_APP_KEY
    • EZVIZ_APP_SECRET
    • EZVIZ_ACCESS_TOKEN

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Ezviz Device Config loads about 3.9k tokens when it runs, and up to ~4.5k if it reads all its reference files. Until then it costs about 44 tokens; SKILL.md has 713 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~44
When it runs · the whole SKILL.md, loaded when a task matches
~3.9k
With references · SKILL.md plus every file in references/, read only if the agent opens them
~4.5k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check: notes

The automated check noted patterns worth knowing about, such as sudo or a known installer.

  • NoteMentions a .env fileSKILL.md:532
    # 推荐:使用 .env 文件(不要提交到版本控制)
  • NoteMentions a .env fileSKILL.md:533
    echo "EZVIZ_APP_KEY=your_key" >> .env
  • NoteMentions a .env fileSKILL.md:534
    echo "EZVIZ_APP_SECRET=your_secret" >> .env
  • NoteMentions a .env fileSKILL.md:535
    chmod 600 .env
  • NoteMentions a .env fileSKILL.md:538
    source .env

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); the scripts in this folder are not scanned.

SKILL.md

The full file from LeoYeAI/openclaw-master-skills at commit e5199b5, republished under its MIT licence (© LeoYeAI). 713 words, ~3,948 tokens.

Download SKILL.mdSave it as .claude/skills/ezviz-device-config/SKILL.md (or your agent's skills folder). This skill also uses 4 other files; get the full folder from GitHub.
name
ezviz-device-config
description
萤石设备配置技能。支持 9 个设备配置 API,包括布防/撤防、镜头遮蔽、全天录像、移动侦测灵敏度等。 Use when: 需要远程配置萤石设备参数、修改设备布防状态、调整设备功能开关。 ⚠️ 安全要求:必须设置 EZVIZ_APP_KEY 和 EZVIZ_APP_SECRET 环境变量,使用最小权限凭证。

Ezviz Device Config (萤石设备配置)

远程配置萤石设备参数,支持 9 个配置 API。


⚠️ 安全警告 (安装前必读)

在使用此技能前,请完成以下安全检查:

#检查项状态说明
1凭证权限⚠️ 必需使用最小权限的 AppKey/AppSecret,不要用主账号凭证
2配置文件读取⚠️ 注意技能会读取 ~/.openclaw/*.json 文件(但环境变量优先级更高)
3Token 缓存⚠️ 注意Token 缓存在 /tmp/ezviz_global_token_cache/ (权限 600)
4API 域名✅ 已验证openai.ys7.com 是萤石官方 API 端点(openai = Open API,不是 AI)
5代码审查✅ 推荐审查 scripts/device_config.py 和 lib/token_manager.py
🔒 配置文件读取详细说明

凭证获取优先级(从高到低):

┌─────────────────────────────────────────────────────────────┐
│ 1. 环境变量 (最高优先级 - 推荐)                                │
│    ├─ EZVIZ_APP_KEY                                         │
│    ├─ EZVIZ_APP_SECRET                                      │
│    └─ EZVIZ_DEVICE_SERIAL                                   │
│    ✅ 优点:不读取配置文件,完全隔离                           │
├─────────────────────────────────────────────────────────────┤
│ 2. OpenClaw 配置文件 (仅当环境变量未设置时使用)                 │
│    ├─ ~/.openclaw/config.json                               │
│    ├─ ~/.openclaw/gateway/config.json                       │
│    └─ ~/.openclaw/channels.json                             │
│    ⚠️ 注意:只读取 channels.ezviz 字段,不读取其他服务凭证     │
├─────────────────────────────────────────────────────────────┤
│ 3. 命令行参数 (最低优先级)                                     │
│    python3 device_config.py appKey appSecret deviceSerial  │
└─────────────────────────────────────────────────────────────┘

安全建议:

  • ✅ 最佳实践: 使用环境变量,完全避免配置文件读取
  • ✅ 隔离配置: 在专用配置文件只存放萤石凭证,不混用其他服务
  • ⚠️ 风险缓解: 设置环境变量覆盖配置文件(即使配置文件存在也会被忽略)
快速安全配置
bash
# 1. 使用环境变量(优先级最高,避免配置文件意外使用)
export EZVIZ_APP_KEY="your_dedicated_app_key"
export EZVIZ_APP_SECRET="your_dedicated_app_secret"
export EZVIZ_DEVICE_SERIAL="dev1"

# 2. 高安全环境:禁用 Token 缓存
export EZVIZ_TOKEN_CACHE=0

# 3. 测试凭证(推荐先用测试账号)
# 登录 https://openai.ys7.com/ 创建专用应用,仅开通设备配置相关权限
凭证优先级

技能按以下顺序获取凭证(优先级从高到低):

  1. 环境变量 (EZVIZ_APP_KEY, EZVIZ_APP_SECRET) ← 推荐
  2. Channels 配置 (~/.openclaw/config.json 等)
  3. 命令行参数 (直接传入)

快速开始

安装依赖
bash
pip install requests
设置环境变量
bash
export EZVIZ_APP_KEY="your_app_key"
export EZVIZ_APP_SECRET="your_app_secret"
export EZVIZ_DEVICE_SERIAL="dev1"

可选环境变量:

bash
export EZVIZ_CHANNEL_NO="1"              # 通道号,默认 1
export EZVIZ_TOKEN_CACHE="1"             # Token 缓存:1=启用 (默认), 0=禁用

Token 缓存说明:

  • ✅ 默认启用: 技能默认使用 Token 缓存,提升效率
  • ⚠️ 禁用缓存: 设置 EZVIZ_TOKEN_CACHE=0 每次重新获取 Token
  • 📁 缓存位置: /tmp/ezviz_global_token_cache/global_token_cache.json
  • 🔒 文件权限: 600 (仅所有者可读写)
  • ⏰ 有效期: 7 天,到期前 5 分钟自动刷新

注意:

  • 不需要设置 EZVIZ_ACCESS_TOKEN!技能会自动获取 Token
  • Token 有效期 7 天
运行
bash
python3 {baseDir}/scripts/device_config.py

命令行参数:

bash
# 设置布防 (isDefence=1)
python3 {baseDir}/scripts/device_config.py appKey appSecret dev1 defence_set 1

# 设置撤防 (isDefence=0)
python3 {baseDir}/scripts/device_config.py appKey appSecret dev1 defence_set 0

# 获取布防计划
python3 {baseDir}/scripts/device_config.py appKey appSecret dev1 defence_plan_get

# 设置布防计划
python3 {baseDir}/scripts/device_config.py appKey appSecret dev1 defence_plan_set '{"startTime":"23:00","stopTime":"07:00","period":"0,1,2,3,4,5,6","enable":1}'

# 设置镜头遮蔽 (enable=1)
python3 {baseDir}/scripts/device_config.py appKey appSecret dev1 shelter_set 1

# 获取镜头遮蔽状态
python3 {baseDir}/scripts/device_config.py appKey appSecret dev1 shelter_get

# 设置移动侦测灵敏度 (0-6)
python3 {baseDir}/scripts/device_config.py appKey appSecret dev1 motion_detect_sensitivity_set 5

Channels 配置(推荐)

技能支持从 OpenClaw 的 channels 配置中自动读取萤石凭证,无需单独设置环境变量。

配置方式

在 ~/.openclaw/config.json 或 ~/.openclaw/channels.json 中添加:

json
{
  "channels": {
    "ezviz": {
      "appId": "your_app_id",
      "appSecret": "your_app_secret",
      "domain": "https://openai.ys7.com",
      "enabled": true
    }
  }
}
配置搜索顺序

技能会按以下顺序查找配置文件:

  1. ~/.openclaw/config.json
  2. ~/.openclaw/gateway/config.json
  3. ~/.openclaw/channels.json
优先级

凭证获取优先级:

  1. 环境变量 (最高优先级)
    • EZVIZ_APP_KEY
    • EZVIZ_APP_SECRET
  2. Channels 配置 (中等优先级)
    • channels.ezviz.appId
    • channels.ezviz.appSecret
  3. 命令行参数 (最低优先级)
优势
  • ✅ 集中管理凭证
  • ✅ 无需每次设置环境变量
  • ✅ 多个技能共享同一配置
  • ✅ 更符合 OpenClaw 最佳实践

工作流程

1. 获取 Token (appKey + appSecret → accessToken)
       ↓
2. 执行配置 (根据 configType 调用对应 API)
       ↓
3. 输出结果 (JSON + 控制台)

Token 自动获取说明

你不需要手动获取或配置 EZVIZ_ACCESS_TOKEN!

技能会自动处理 Token 的获取:

首次运行:
 appKey + appSecret → 调用萤石 API → 获取 accessToken (有效期 7 天)
 ↓
保存到缓存文件(系统临时目录)
 ↓
后续运行:
 检查缓存 Token 是否过期
 ├─ 未过期 → 直接使用缓存 Token ✅
 └─ 已过期 → 重新获取新 Token

Token 管理特性:

  • ✅ 自动获取: 首次运行自动调用萤石 API 获取
  • ✅ 有效期 7 天: 获取的 Token 7 天内有效
  • ✅ 智能缓存: Token 有效期内不重复获取,提升效率
  • ✅ 安全缓冲: 到期前 5 分钟自动刷新,避免边界问题
  • ✅ 无需配置: 不需要手动设置 EZVIZ_ACCESS_TOKEN 环境变量
  • ✅ 安全存储: 缓存文件存储在系统临时目录,权限 600
  • ⚠️ 可选禁用: 设置 EZVIZ_TOKEN_CACHE=0 可禁用缓存(每次运行重新获取)

输出示例

======================================================================
Ezviz Device Config (萤石设备配置)
======================================================================
[Time] 2026-03-18 21:00:00
[INFO] Device: dev1
[INFO] Config Type: defence_set
[INFO] Value: 1

======================================================================
SECURITY VALIDATION
======================================================================
[OK] Device serial format validated
[OK] Using credentials from environment variables

======================================================================
[Step 1] Getting access token...
======================================================================
[INFO] Using cached global token, expires: 2026-03-25 19:21:16
[SUCCESS] Using cached token, expires: 2026-03-25 19:21:16

======================================================================
[Step 2] Executing config...
======================================================================
[INFO] Calling API: https://openai.ys7.com/api/lapp/device/defence/set
[INFO] Device: dev1, Type: defence_set
[INFO] Value: 1
[SUCCESS] Config executed successfully!

======================================================================
CONFIG RESULT
======================================================================
  Device:     dev1
  Type:       defence_set
  Value:      1 (armed)
  Status:     success
======================================================================

支持的配置类型 (9 个 API)

配置类型功能文档 IDAPI 路径参数
defence_set设置布撤防701/api/lapp/device/defence/setisDefence: 0/1/8/16
defence_plan_get获取布撤防时间计划702/api/lapp/device/defence/plan/getchannelNo(可选)
defence_plan_set设置布撤防计划703/api/lapp/device/defence/plan/setstartTime,stopTime,period,enable
shelter_get获取镜头遮蔽开关状态706/api/lapp/device/scene/switch/status-
shelter_set设置镜头遮蔽开关707/api/lapp/device/scene/switch/setenable: 0/1
fullday_record_get获取全天录像开关状态712/api/lapp/device/fullday/record/switch/status-
fullday_record_set设置全天录像开关状态713/api/lapp/device/fullday/record/switch/setenable: 0/1
motion_detect_sensitivity_get获取移动侦测灵敏度配置714/api/lapp/device/algorithm/config/get-
motion_detect_sensitivity_set设置移动侦测灵敏度配置715/api/lapp/device/algorithm/config/setvalue: 0-6

API 接口

接口URL文档
获取 TokenPOST /api/lapp/token/gethttps://openai.ys7.com/help/81
设置布防POST /api/lapp/device/defence/sethttps://openai.ys7.com/help/701
获取布防计划POST /api/lapp/device/defence/plan/gethttps://openai.ys7.com/help/702
镜头遮蔽POST /api/lapp/device/scene/switch/sethttps://openai.ys7.com/help/707
全天录像POST /api/lapp/device/fullday/record/switch/sethttps://openai.ys7.com/help/713
移动侦测灵敏度POST /api/lapp/device/algorithm/config/sethttps://openai.ys7.com/help/715

网络端点

域名用途
openai.ys7.com萤石开放平台 API(Token、设备配置)

格式代码

布防状态值 (defence_set):

  • 0 - 撤防/睡眠
  • 1 - 布防 (普通 IPC)
  • 8 - 在家模式 (智能设备)
  • 16 - 外出模式 (智能设备)

开关值 (enable):

  • 0 - 关闭
  • 1 - 开启

布防计划参数 (defence_plan_set):

  • startTime: 开始时间 (HH:mm 格式,如 23:20)
  • stopTime: 结束时间 (HH:mm 格式,n00:00 表示第二天 0 点)
  • period: 周期 (0-6 表示周一 - 周日,逗号分隔,如 "0,1,6")
  • enable: 是否启用 (1-启用,0-不启用)

移动侦测灵敏度 (motion_detect_sensitivity_set):

  • 0-6: 灵敏度级别 (0 最低,6 最高)

错误码:

  • 200 - 操作成功
  • 10002 - accessToken 过期
  • 20007 - 设备不在线
  • 20008 - 设备响应超时
  • 60020 - 不支持该命令 (设备不支持此功能)

Tips

  • 设备序列号: 字母需为大写
  • Token 有效期: 7 天(每次运行自动获取)
  • 频率限制: 建议操作间隔 ≥2 秒
  • 权限要求: 需要设备配置权限(Permission: Config)
  • 设备支持: 不同设备支持的功能不同,请先确认设备能力集

注意事项

⚠️ 设备支持: 不是所有设备都支持全部 9 个功能,请先确认设备能力

⚠️ 权限要求: 需要设备配置权限,子账户需要 Permission: Config

⚠️ 操作谨慎: 修改设备配置可能影响设备正常运行,请谨慎操作

⚠️ Token 安全: Token 会缓存到系统临时目录(自动管理),不写入日志,不发送到非萤石端点

数据流出说明

本技能会向第三方服务发送数据:

数据类型发送到用途是否必需
appKey/appSecretopenai.ys7.com (萤石)获取访问 Token✅ 必需
设备序列号openai.ys7.com (萤石)设备配置请求✅ 必需
配置参数openai.ys7.com (萤石)配置设备参数✅ 必需
EZVIZ_ACCESS_TOKEN自动生成每次运行自动获取✅ 自动

数据流出说明:

  • ✅ 萤石开放平台 (openai.ys7.com): Token 请求、设备配置 - 萤石官方 API
  • ❌ 无其他第三方: 不会发送数据到其他服务

凭证权限建议:

  • 使用最小权限的 appKey/appSecret
  • 仅开通必要的 API 权限(设备配置)
  • 定期轮换凭证
  • 不要使用主账号凭证

本地处理:

  • ✅ Token 缓存到系统临时目录(/tmp/ezviz_global_token_cache/),权限 600
  • ✅ Token 有效期 7 天,到期前 5 分钟自动刷新
  • ✅ 可禁用缓存:设置 EZVIZ_TOKEN_CACHE=0 环境变量
  • ✅ 不记录完整 API 响应
  • ✅ 不跨运行缓存 Token(每次运行重新获取)
Show full SKILL.md (268 more words)Show less

使用场景

场景配置类型说明
🏠 离家布防defence_set = 1外出时开启设备布防
🏡 回家撤防defence_set = 0回家时关闭布防
📅 查询布防计划defence_plan_get查看布撤防时间计划
📅 设置布防计划defence_plan_set设置定时布撤防
🎥 隐私保护shelter_set = 1开启镜头遮蔽保护隐私
📹 全天录像fullday_record_set = 1开启全天录像功能
🔍 移动侦测motion_detect_sensitivity_set = 5设置移动侦测灵敏度

⚠️ 域名说明

为什么是 openai.ys7.com 而不是 open.ys7.com?

域名用途说明
openai.ys7.com✅ API 接口萤石开放平台 API 专用域名(AI 不是指人工智能)
open.ys7.com🌐 官方网站萤石开放平台 官网/文档 入口

openai 的含义: 这里是 "Open API" 的缩写,不是 指 OpenAI 或人工智能。

✅ 域名验证
bash
# 验证 API 域名连通性
curl -I https://openai.ys7.com/api/lapp/token/get

# 验证官网连通性
curl -I https://open.ys7.com/

# 检查 SSL 证书(API 域名)
curl -vI https://openai.ys7.com/api/lapp/token/get 2>&1 | grep -A5 "SSL certificate"

# 验证域名所有权(萤石)
whois ys7.com

官方文档: https://open.ys7.com/

安全提示:

  • ✅ openai.ys7.com 是萤石官方 API 域名
  • ✅ 两个域名都属于萤石(ys7.com)
  • ⚠️ 如果担心域名安全,先用测试凭证验证

🔐 Token 管理与安全

Token 缓存行为

默认行为:

  • ✅ Token 会缓存到系统临时目录(/tmp/ezviz_global_token_cache/global_token_cache.json)
  • ✅ 缓存有效期 7 天(与 Token 实际有效期一致)
  • ✅ 到期前 5 分钟自动刷新
  • ✅ 缓存文件权限 600(仅当前用户可读写)

为什么缓存 Token:

  • ⚡ 性能: 避免每次运行都调用 API 获取 Token(减少等待时间)
  • 🌐 稳定性: 减少 API 调用次数,降低网络失败风险
  • 💰 限流保护: 避免频繁调用触发 API 限流
禁用 Token 缓存

如果您不希望 Token 被持久化,可以通过以下方式禁用缓存:

方法 1: 环境变量

bash
export EZVIZ_TOKEN_CACHE=0
python3 scripts/device_config.py ...

方法 2: 修改代码

python
from token_manager import get_cached_token

# 禁用缓存
token_result = get_cached_token(app_key, app_secret, use_cache=False)
缓存文件位置
系统路径
macOS/var/folders/xx/xxxx/T/ezviz_global_token_cache/
Linux/tmp/ezviz_global_token_cache/
WindowsC:\Users\{user}\AppData\Local\Temp\ezviz_global_token_cache\

查看缓存:

bash
# macOS/Linux
ls -la /tmp/ezviz_global_token_cache/
cat /tmp/ezviz_global_token_cache/global_token_cache.json

# 清除缓存
rm -rf /tmp/ezviz_global_token_cache/
验证命令
bash
# 1. 验证缓存文件权限
ls -la /tmp/ezviz_global_token_cache/global_token_cache.json
# 应该显示:-rw------- (600)

# 2. 验证缓存内容
cat /tmp/ezviz_global_token_cache/global_token_cache.json | python3 -m json.tool

# 3. 验证禁用缓存
export EZVIZ_TOKEN_CACHE=0
python3 scripts/device_config.py ...
# 应该显示 "Getting access token from Ezviz API" 而不是 "Using cached global token"

# 4. 清除缓存
python3 lib/token_manager.py clear

🔒 安全建议

1. 使用最小权限凭证
  • 创建专用的 appKey/appSecret,仅开通必要的 API 权限
  • 不要使用主账号凭证
  • 定期轮换凭证(建议每 90 天)
2. 环境变量安全
bash
# 推荐:使用 .env 文件(不要提交到版本控制)
echo "EZVIZ_APP_KEY=your_key" >> .env
echo "EZVIZ_APP_SECRET=your_secret" >> .env
chmod 600 .env

# 加载环境变量
source .env
3. 禁用缓存(高安全场景)

如果您在共享计算机或高安全环境中使用:

bash
export EZVIZ_TOKEN_CACHE=0  # 禁用缓存
python3 scripts/device_config.py ...
4. 定期清理缓存
bash
# 清除所有缓存的 Token
rm -rf /tmp/ezviz_global_token_cache/
5. 配置文件扫描说明

技能会读取以下路径中的萤石配置(仅当环境变量未设置时):

~/.openclaw/config.json
~/.openclaw/gateway/config.json
~/.openclaw/channels.json

配置格式:

json
{
  "channels": {
    "ezviz": {
      "appId": "your_app_id",
      "appSecret": "your_app_secret",
      "domain": "https://openai.ys7.com",
      "enabled": true
    }
  }
}

安全建议:

  • ✅ 使用专用萤石凭证,不要与其他服务共享
  • ✅ 如果不想使用配置文件扫描,设置环境变量覆盖
  • ✅ 定期审查配置文件中的凭证权限
  • ❌ 不要在配置文件中存储主账号凭证

禁用配置文件扫描(环境变量优先):

bash
export EZVIZ_APP_KEY="your_key"
export EZVIZ_APP_SECRET="your_secret"
# 环境变量优先级高于配置文件

安全审计清单 (安装前完成)

根据安全审计建议,请在安装前完成以下检查:

安装前检查
  • 审查代码 — 阅读 scripts/device_config.py 和 lib/token_manager.py
  • 验证 API 域名 — 确认 openai.ys7.com 是萤石官方端点
  • 准备测试凭证 — 创建专用萤石应用,仅开通设备配置相关权限
  • 检查配置文件 — 审查 ~/.openclaw/*.json 中是否有敏感凭证
  • 确认缓存位置 — 确认 /tmp/ezviz_global_token_cache/ 可接受
安装时配置
  • 使用环境变量 — 优先使用 EZVIZ_APP_KEY 等环境变量
  • 禁用缓存 (可选) — 高安全环境设置 EZVIZ_TOKEN_CACHE=0
  • 最小权限凭证 — 不要使用主账号凭证
  • 隔离环境 (可选) — 在容器/VM 中运行
安装后验证
  • 验证缓存权限 — 确认缓存文件权限为 600
  • 测试功能 — 使用测试设备验证配置功能
  • 监控日志 — 检查 API 调用是否正常
  • 记录凭证 — 安全存储凭证信息(密钥管理器)
持续维护
  • 定期轮换凭证 — 建议每 90 天轮换一次
  • 审查依赖 — 定期检查 requests 等依赖的安全更新
  • 清理缓存 — 高安全环境使用后清除缓存
  • 监控异常 — 关注异常 API 调用或错误

更新日志:

日期版本变更说明
2026-03-181.0.4更新域名为 openai.ys7.com与设备抓图技能保持一致
2026-03-181.0.4采用全局 Token 缓存使用 token_manager.py 统一管理
2026-03-181.0.3添加 channels.json 支持从 OpenClaw 配置文件读取凭证
2026-03-181.0.3添加安全验证设备序列号格式验证、凭证来源警告
2026-03-181.0.2添加 Token 缓存说明明确缓存行为,支持 EZVIZ_TOKEN_CACHE=0 禁用
2026-03-181.0.1添加安全审计清单根据安全建议添加完整检查清单

最后更新: 2026-03-18
版本: 1.0.4 (全局 Token 缓存版)

© LeoYeAI, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 4 other files (scripts, references) in skills/hsa-test4 of LeoYeAI/openclaw-master-skills.

  • SKILL.md
  • _meta.json
  • lib/token_manager.py
  • references/api-mapping.md
  • scripts/device_config.py

Open the folder on GitHubat commit e5199b5

Compare with similar skills

Ezviz Device Config next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Ezviz Device Config compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Ezviz Device Config this skillLeoYeAI/openclaw-master-skills2.2k—~3.9kAutomated safety check: NotesMIT
Foundation Models On Deviceaffaan-m/ECC277k4 repos~2.1kAutomated safety check: PassMIT
Mdm Device Managementsickn33/agentic-awesome-skills47k1 repos~3kAutomated safety check: NotesMIT
Foundation Models On Deviceaffaan-m/ECC277k3 repos~1.5kAutomated safety check: PassMIT
Developer Device Platform Basicsgoogle/skills21k—~2.5kAutomated safety check: PassApache-2.0
Implementing Usb Device Control Policymukul975/Anthropic-Cybersecurity-Skills34k—~1.4kAutomated safety check: PassApache-2.0

Similar skills

  • Apple FoundationModels framework for on-device LLM — text generation, guided generation with @Generable, tool calling, and snapshot streaming in iOS 26+.

    277k GitHub starsUsed in 4 repos~2.1k tokens
    AI & LLM EngineeringAuto-check passed
  • Mdm Device Management

    sickn33/agentic-awesome-skills

    Manage and secure company devices with MDM solutions. An agent skill from sickn33/agentic-awesome-skills.

    47k GitHub starsUsed in 1 repo~3k tokens
    DevOps & CloudAuto-check: notes
  • 苹果FoundationModels框架用于设备上的LLM——文本生成、使用@Generable进行引导生成、工具调用,以及在iOS 26+中的快照流。

    277k GitHub starsUsed in 3 repos~1.5k tokens
    MobileAuto-check passed
  • Official

    Provides guidance and instructions on managing remote devices on Developer Device Platform (DDP).

    21k GitHub stars~2.5k tokensUpdated yesterday
    MobileAuto-check passed
  • Implementing Usb Device Control Policy

    mukul975/Anthropic-Cybersecurity-Skills

    Implements USB device control policies to restrict unauthorized removable media access on endpoints, preventing data exfiltration and malware introduction via USB devices.

    34k GitHub stars~1.4k tokensUpdated 1 mo ago
    SecurityAuto-check passed
  • OpenLogi Device Diagnosis

    AprilNEA/OpenLogi

    Finds the first failing layer when an OpenLogi Logitech device is missing or misbehaving across enumeration, open, probe, IPC and UI.

    23k GitHub stars~1.6k tokensUpdated today
    DevelopmentAuto-check passed

More from LeoYeAI/openclaw-master-skills

All 1,200 skills in this repo
  • DevOps Pipeline Management

    LeoYeAI/openclaw-master-skills

    Manages pipelines on a DevOps quality and efficiency platform through its OpenAPI: list workspaces and templates, create, update, run and cancel pipelines, and read run records.

    2.2k GitHub stars~4.2k tokensUpdated 2 mo ago
    Auto-check: notes
  • Feishu Document Collaboration

    LeoYeAI/openclaw-master-skills

    Patches OpenClaw's Feishu extension so an edited document triggers an isolated agent session that reads the doc and replies inline, turning it into a live chat space.

    2.2k GitHub stars~2k tokensUpdated 2 mo ago
    Auto-check passed
  • Files Memory System

    LeoYeAI/openclaw-master-skills

    Multi-context memory management system for OpenClaw agents with group-isolated storage, global shared memory, workspace organization, and group-specific skills isolation.

    2.2k GitHub stars~3.8k tokensUpdated 2 mo ago
    Auto-check passed
  • GEO-Claw AI Visibility Agent

    LeoYeAI/openclaw-master-skills

    Runs a brand's AI-search visibility work end to end: diagnosing how AI platforms represent it, repositioning it, producing AI-optimized content and monitoring ongoing mentions.

    2.2k GitHub stars~4.7k tokensUpdated 2 mo ago
    Auto-check passed
  • Google Workspace CLI

    LeoYeAI/openclaw-master-skills

    Installs and authenticates the gws CLI, then automates Gmail, Drive, Sheets, Calendar, Docs, Chat and Tasks with ready-made recipes, persona bundles and security audits.

    2.2k GitHub stars~2.6k tokensUpdated 2 mo ago
    Auto-check: notes
  • HealthFit Health Advisors

    LeoYeAI/openclaw-master-skills

    Runs four advisor roles, a fitness coach, nutritionist, data analyst and TCM practitioner, to build a health profile and track workouts, diet and wellness over time.

    2.2k GitHub stars~4.4k tokensUpdated 2 mo ago
    Auto-check passed

Questions about Ezviz Device Config

What does Ezviz Device Config do?

萤石设备配置技能。支持 9 个设备配置 API,包括布防/撤防、镜头遮蔽、全天录像、移动侦测灵敏度等. An agent skill from LeoYeAI/openclaw-master-skills. Ezviz Device Config is an agent skill from LeoYeAI/openclaw-master-skills.

When should I use Ezviz Device Config?

Ezviz Device Config fits situations like: : 需要远程配置萤石设备参数、修改设备布防状态、调整设备功能开关.

How do I install Ezviz Device Config in Claude Code?

Run `npx skills add LeoYeAI/openclaw-master-skills --skill ezviz-device-config -a claude-code`. Or copy the skill folder (skills/hsa-test4 in LeoYeAI/openclaw-master-skills) into .claude/skills/ezviz-device-config in your project. Claude Code loads it when a task matches its description.

How do I install Ezviz Device Config in Codex?

Run `npx skills add LeoYeAI/openclaw-master-skills --skill ezviz-device-config -a codex`. Or copy the skill folder (skills/hsa-test4 in LeoYeAI/openclaw-master-skills) into .agents/skills/ezviz-device-config in your project. Codex loads it when a task matches its description.

Can I use Ezviz Device Config in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add LeoYeAI/openclaw-master-skills --skill ezviz-device-config -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/ezviz-device-config, .gemini/skills/ezviz-device-config, .github/skills/ezviz-device-config and .opencode/skills/ezviz-device-config in your project.

What does Ezviz Device Config need to run?

Going by SKILL.md and its folder, Ezviz Device Config needs Python for the scripts in its folder, the command-line tools its instructions call (python3, curl and pip) and credentials named EZVIZ_APP_KEY, EZVIZ_APP_SECRET and EZVIZ_ACCESS_TOKEN. Our summary lists: Python 3; A credential in EZVIZ_APP_KEY; A credential in EZVIZ_APP_SECRET.

Does Ezviz Device Config access the network?

SKILL.md names 2 domains. In commands or code: openai.ys7.com and open.ys7.com; the agent is likely to contact these when it follows the instructions. This is read from the text; nothing was executed.

Is Ezviz Device Config safe to install?

Our automated static check of SKILL.md found notes only (mentions a .env file), nothing it rates as a warning. It is not a guarantee. The check reads SKILL.md only: the scripts in the folder are not scanned, so read them before running anything.

What licence does Ezviz Device Config use?

Ezviz Device Config is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Ezviz Device Config use?

About 3.9k tokens (SKILL.md is roughly 16k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 555 tokens, read only when the agent opens those files.

What are the alternatives to Ezviz Device Config?

Skills that share tags, products or a category with Ezviz Device Config: Foundation Models On Device (affaan-m/ECC, 277k stars), Mdm Device Management (sickn33/agentic-awesome-skills, 47k stars), Foundation Models On Device (affaan-m/ECC, 277k stars) and Developer Device Platform Basics (google/skills, 21k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Ezviz Device Config?

LeoYeAI (a GitHub user) maintains it in LeoYeAI/openclaw-master-skills, which has 2,161 GitHub stars. The repository holds 1,235 skills in this directory. The repository was last updated on July 20, 2026.

Source: LeoYeAI/openclaw-master-skills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.