Agent skill

Onboard Growth Lab

by tsingyuai in tsingyuai/growth-lab

通过自然语言完成 Growth Lab 的统一依赖审计与配置。检查所有能力所需的 API key、可直接安装的第三方 CLI/Client、浏览器与登录态;拒绝隐含的外部 Skill 或脚本依赖,告诉用户哪些已配置、哪些缺失、从哪里获取,并允许本轮绕过。需要首次配置、检查环境、修复依赖或询问“还缺什么”时使用。

Apache-2.0Auto-check: notes

Install Onboard Growth Lab

skills CLI
$ npx skills add tsingyuai/growth-lab --skill onboard-growth-lab -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install tsingyuai/growth-lab onboard-growth-lab --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/tsingyuai/growth-lab.git skills-src && mkdir -p .claude/skills && cp -r skills-src/models/onboard-growth-lab .claude/skills/onboard-growth-lab && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
onboard-growth-lab
GitHub stars
2k
Token cost
~1k tokens
SKILL.md length
274 words
Files
4 (incl. scripts, references)
Skills in repo
22
Repo updated
First seen
Licence
Apache-2.0

At a glance

通过自然语言完成 Growth Lab 的统一依赖审计与配置。检查所有能力所需的 API key、可直接安装的第三方 CLI/Client、浏览器与登录态;拒绝隐含的外部 Skill 或脚本依赖,告诉用户哪些已配置、哪些缺失、从哪里获取,并允许本轮绕过。需要首次配置、检查环境、修复依赖或询问“还缺什么”时使用。

  • Works in 6 steps: 完整读取 依赖清单。 → 先运行 python… → 向用户给出一张统一状态表:已就绪、缺失、可选、本轮绕过。 → …
  • SKILL.md covers 工作方式, 小红书 browser-first 就绪门禁, MediaCrawler 风险确认与就绪门禁 and 依赖边界, plus 2 more sections
  • Runs Python scripts from its folder; calls python and curl; needs BING_WEBMASTER_API_KEY

What it does

Onboard Growth Lab is an agent skill from tsingyuai/growth-lab. 通过自然语言完成 Growth Lab 的统一依赖审计与配置。检查所有能力所需的 API key、可直接安装的第三方 CLI/Client、浏览器与登录态;拒绝隐含的外部 Skill 或脚本依赖,告诉用户哪些已配置、哪些缺失、从哪里获取,并允许本轮绕过。需要首次配置、检查环境、修复依赖或询问“还缺什么”时使用。

Its SKILL.md is about 1k tokens, which your agent loads only when the skill is triggered. The skill folder holds 5 other files, including scripts and reference files (for example `references/dependencies.md`, `scripts/check_configuration.py` and `scripts/test_check_configuration.py`).

It works with Xiaohongshu and Model Context Protocol. The repository describes itself as: An end-to-end growth tool that understands the product, fetch the data it needs, researches the market, executes campaigns, and reviews results to improve the next round of… The licence is Apache-2.0.

Example prompts

  • “/onboard-growth-lab”

Requirements

  • Python 3
  • Node.js
  • A credential in BING_WEBMASTER_API_KEY

Workflow steps

6 steps, taken from the first numbered list in SKILL.md.

  1. 完整读取 依赖清单。
  2. 先运行 python models/onboard-growth-lab/scripts/check_configuration.py,再只读检查当前机器、已声明的第三方 Client 和认证 profile。脚本与回复都不得输出 secret、cookie、token…
  3. 向用户给出一张统一状态表:已就绪、缺失、可选、本轮绕过。
  4. 用自然语言询问用户要启用哪些缺失能力、哪些本轮绕过。不要替用户安装所有可选项。
  5. 对用户选择启用的项目逐项处理
  6. 每完成一项就重新执行对应的只读检查。结束时再次输出统一状态表和本轮绕过项。

What it can do on your machine

Read from SKILL.md and the folder at commit 2d0807c. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Ships 2 files in scripts/ (Python), which the agent can run.

    Shell commands in SKILL.md call:

    • python
    • curl

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md. Its commands use curl, which can reach the network depending on how they are called.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names these keys or tokens, usually read from environment variables:

    • BING_WEBMASTER_API_KEY

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Onboard Growth Lab loads about 1k tokens when it runs, and up to ~3.5k if it reads all its reference files. Until then it costs about 44 tokens; SKILL.md has 274 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~44
When it runs · the whole SKILL.md, loaded when a task matches
~1k
With references · SKILL.md plus every file in references/, read only if the agent opens them
~3.5k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check: notes

The automated check noted patterns worth knowing about, such as sudo or a known installer.

  • NoteMentions a .env fileSKILL.md:17
    ../../CONFIGURATION.md) 中的本地配置步骤。默认请用户在 `.env.local` 或系统密钥管理器中自行配置;只有用户明确授权写入时才可修改 `.env.local`,且永不回显完整值。

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); the scripts in this folder are not scanned.

SKILL.md

The full file from tsingyuai/growth-lab at commit 2d0807c, republished under its Apache-2.0 licence (© tsingyuai). 274 words, ~1,040 tokens.

Download SKILL.mdSave it as .claude/skills/onboard-growth-lab/SKILL.md (or your agent's skills folder). This skill also uses 3 other files; get the full folder from GitHub.
name
onboard-growth-lab
description
通过自然语言完成 Growth Lab 的统一依赖审计与配置。检查所有能力所需的 API key、可直接安装的第三方 CLI/Client、浏览器与登录态;拒绝隐含的外部 Skill 或脚本依赖,告诉用户哪些已配置、哪些缺失、从哪里获取,并允许本轮绕过。需要首次配置、检查环境、修复依赖或询问“还缺什么”时使用。

Growth Lab 统一 onboarding

这是整个系统唯一的 onboarding 入口。不要要求各业务 Skill 各自重复审计,也不要创建页面、注册全局 command 或维护配置状态机。

工作方式

  1. 完整读取 依赖清单。
  2. 先运行 python models/onboard-growth-lab/scripts/check_configuration.py,再只读检查当前机器、已声明的第三方 Client 和认证 profile。脚本与回复都不得输出 secret、cookie、token 或认证文件内容。
  3. 向用户给出一张统一状态表:已就绪、缺失、可选、本轮绕过。
  4. 用自然语言询问用户要启用哪些缺失能力、哪些本轮绕过。不要替用户安装所有可选项。
  5. 对用户选择启用的项目逐项处理:
    • API key:解释用途、官方获取入口、变量名和 CONFIGURATION.md 中的本地配置步骤。默认请用户在 .env.local 或系统密钥管理器中自行配置;只有用户明确授权写入时才可修改 .env.local,且永不回显完整值。
    • 第三方 CLI/Client:必须有用户可直接访问的官方来源和安装方式;说明来源、许可证、安装位置与命令,用户确认后安装并检查版本。
    • 登录认证:启动上游或业务 Skill 已定义的原生交互流程,让用户本人扫码、OAuth 或输入验证码;认证材料不得进入仓库或 Memory。
  6. 每完成一项就重新执行对应的只读检查。结束时再次输出统一状态表和本轮绕过项。

小红书 browser-first 就绪门禁

小红书不再经过 MediaCrawler。需要小红书采集时,按 xiaohongshu-mcp 独立检查:

  1. 告诉用户首次默认采集 25 条,数量可调整,但建议 25 条。
  2. 检查 XHS_MCP_ENDPOINT、XHS_MCP_BINARY、XHS_MCP_LOGIN_BINARY 和仓库外 XHS_MCP_COOKIES_PATH,不读取或输出登录态内容。
  3. 缺少配置时显示 CONFIGURATION.md 的准确位置、需要填写的字段及用途,然后停下等待用户配置或选择本轮绕过。
  4. 服务未运行时先说明将启动本机只读服务;登录缺失时说明授权边界并在用户确认后打开可见二维码登录窗口。
  5. 只有本机 health check、登录状态和一次低频最小读取全部成功,才报告 已就绪,可立即抓取。遇到风控、验证、超时或空响应立即停止,不自动重试或规避平台控制。

小红书登录只授权读取公开研究证据,不授权点赞、收藏、评论、关注、上传或发布。

MediaCrawler 风险确认与就绪门禁

MediaCrawler 的安装、登录和实际抓取必须在本统一 onboarding 中完成,不得把“已安装”或“有 profile”报告为可用。

  1. 在启动 Chrome、二维码登录或任何真实抓取前,通过 Agent 对话原意告知:
    • 自动化抓取可能触发平台风控,导致限流、验证、登录失效或封号。
    • 不要使用正式账号、主账号或承载重要资产的账号;使用者应准备可损失的专用账号。
    • 账号被封后,部分公开内容在不需要该账号的路径上仍可能采集,但不保证持续可用,也不得尝试绕过平台风控。
  2. 请用户明确回复类似“我已了解封号风险,并确认使用非正式、可损失的专用账号”。沉默、模糊回复或仅要求“继续”不构成确认。未取得确认就停在风险门禁,不启动登录和抓取。
  3. 确认后,让用户选择需要启用的平台:抖音、快手、B 站、微博、贴吧、知乎。小红书使用独立的 browser-first 就绪门禁。未启用的平台必须由用户明确说“本轮绕过”,不得默认忽略。
  4. 只要启用任一 MediaCrawler 平台,必须先完成不可绕过的 Chrome CDP onboarding:Chrome 版本至少 144;为 MediaCrawler 启动一个使用仓库外持久化 profile 的专用 Chrome 实例,同时显式传入 --remote-debugging-port=<port> 和 --user-data-dir=<profile-dir>;curl --noproxy '*' http://127.0.0.1:<port>/json/version 必须返回可解析的 Chrome DevTools JSON;MediaCrawler 配置为 ENABLE_CDP_MODE = True、CDP_CONNECT_EXISTING = True 且 CDP_DEBUG_PORT = <port>。Chrome 144+ 在 chrome://inspect/#remote-debugging 中的 GUI auto-connect 服务不提供 MediaCrawler 所需的 /json/version,不得把“Server running”字样单独当成通过。任一项失败就报告 CDP 未就绪并停止,不得回退到标准 Playwright、临时干净浏览器或 Cookie 注入。CDP 不允许本轮绕过;用户只能绕过整个 MediaCrawler 能力或某个平台。
  5. 对每个启用平台依次执行 MediaCrawler operations 的登录就绪检查。必须同时满足:CDP 连接已验证、页面显示已登录、最小真实读取成功、产出非空且无登录/风控信号。
  6. 只有上述四项全部通过才报告该平台为 已就绪,可立即抓取。其他状态使用 CDP 未就绪、待登录、验证失败、触发风控 或 本轮绕过;不维护额外状态文件。

依赖边界

  • Growth Lab 调用的脚本必须位于本仓库。不得调用 ~/.codex/skills、~/.claude/skills、其他项目脚本或某个 Agent 产品的私有认证文件。
  • 仓库外只允许用户可从官方渠道直接安装的 CLI/Client,以及用户自己的浏览器登录会话。
  • 发现隐含外部 Skill/脚本时,不要尝试安装或读取;报告为仓库缺陷,改用仓库内脚本或声明为可安装的第三方 Client。
  • API 服务不等于 Client;调用代码必须随仓库分发,凭据由本 Skill 配置。

判断原则

  • “配置存在”与“配置有效”分开报告。环境变量非空只能证明存在;只有安全的 health check 或一次真实调用成功才能证明有效。MediaCrawler 的安装、CDP 和登录页各自通过仍不足以证明可用,必须完成最小真实读取。
  • 用户可随时说“我不需要 SEO / 不需要生图 / 不需要小红书详情提取”。将相关依赖标成本轮绕过,不要继续追问。
  • MediaCrawler 的 Chrome CDP 是不可分割的强制依赖,不是可选项。用户可以绕过 MediaCrawler 或某个平台,不得在保留抓取能力的同时绕过 CDP。
  • 替代关系必须显式呈现。例如生图只需 Gemini 或 OpenAI 其中一条;小红书使用 xiaohongshu-mcp,其余六个已声明媒体平台共用 MediaCrawler。
  • 不把“本轮绕过”持久化成全局状态。下一次 onboarding 重新检查并结合当次目标询问。
  • 不修改业务 Memory 来保存环境状态。Memory 只保存增长过程与结果。
  • 安装、登录或联网验证属于有副作用操作;先说明动作并获得用户确认。只读检查可直接执行。

交付格式

先给结论,再给统一状态表:

能力状态缺少什么 / 下一步
SEO 数据读取缺失BING_WEBMASTER_API_KEY;从 Bing Webmaster Tools 获取
SEO 批量 SERP 与页面渲染缺失Node.js 已安装;需从 npm 安装 Playwright 与 Chromium,或确认使用当前 Runtime 真实浏览器完成同等检查
IndexNow 提交本轮绕过用户不需要主动提交 URL
AI 生图已就绪OpenAI 凭据存在;尚未做付费调用验证
小红书只读采集缺失按 CONFIGURATION.md 配置本机 xiaohongshu-mcp 二进制并完成可见扫码登录
媒体平台采集CDP 未就绪Chrome GUI auto-connect 已开启,但 /json/version 为 404;需启动带持久化 profile 和显式 debug port 的专用 Chrome

最后只问当前确实需要用户决策或提供的信息,不把完整清单再次变成问卷。

© tsingyuai, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 3 other files (scripts, references) in models/onboard-growth-lab of tsingyuai/growth-lab.

  • SKILL.md
  • references/dependencies.md
  • scripts/check_configuration.py
  • scripts/test_check_configuration.py

Open the folder on GitHubat commit 2d0807c

Compare with similar skills

Onboard Growth Lab next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Onboard Growth Lab compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Onboard Growth Lab this skilltsingyuai/growth-lab2k—~1kAutomated safety check: NotesApache-2.0
Xiaohongshu Skillsautoclaw-cc/xiaohongshu-skills1.9k—~748Automated safety check: PassMIT
Xiaohongshuzhjiang22/openclaw-xhs1231 repos~1.1kAutomated safety check: PassMIT
Qiaomu Codex Imagegenjoeseesun/qiaomu-codex-imagegen125—~2.3kAutomated safety check: PassMIT
Xhs Authautoclaw-cc/xiaohongshu-skills1.9k—~832Automated safety check: PassMIT
Sandbasesandbaseai/cli188—~3.1kAutomated safety check: PassApache-2.0

Similar skills

  • Xiaohongshu Skills

    autoclaw-cc/xiaohongshu-skills

    小红书自动化技能集合。支持认证登录、内容发布、搜索发现、社交互动、复合运营. An agent skill from autoclaw-cc/xiaohongshu-skills.

    1.9k GitHub stars~748 tokensUpdated 4 mo ago
    Auto-check passed
  • Xiaohongshu

    zhjiang22/openclaw-xhs

    小红书(RedNote)内容工具。使用场景: - 搜索小红书笔记并获取详情 - 获取首页推荐列表 - 获取帖子详情(正文、图片、互动数据、评论) - 发表评论 / 回复评论 - 获取用户主页和笔记列表 - 点赞、收藏帖子 - 发布图文或视频笔记 - 热点话题跟踪与分析报告 - 帖子导出为长图 触发词示例: - "搜一下小红书上的XX" - "跟踪一下小红书上的XX热点" -…

    123 GitHub starsUsed in 1 repo~1.1k tokens
    Auto-check passed
  • Qiaomu Codex Imagegen

    joeseesun/qiaomu-codex-imagegen

    Generate or edit images with Codex's built-in image generation from any agent, through an MCP tool or a plain CLI.

    125 GitHub stars~2.3k tokensUpdated 7 days ago
    Media & CreativeAuto-check passed
  • Xhs Auth

    autoclaw-cc/xiaohongshu-skills

    小红书认证管理技能。检查登录状态、登录(二维码或手机号)、退出登录. An agent skill from autoclaw-cc/xiaohongshu-skills.

    1.9k GitHub stars~832 tokensUpdated 4 mo ago
    Auto-check passed
  • Sandbase

    sandbaseai/cli

    Discover better ways to complete tasks. An agent skill from sandbaseai/cli.

    188 GitHub stars~3.1k tokensUpdated today
    Agent WorkflowsAuto-check passed
  • Xiaohongshu Content Research

    jumodada/Drissionpage-MCP-Server

    A skill your agent uses for authorized, read-only research on public Xiaohongshu content or the local Xiaohongshu-like playground fixture.

    487 GitHub stars~768 tokensUpdated 27 days ago
    Productivity & AutomationAuto-check passed

More from tsingyuai/growth-lab

All 22 skills in this repo
  • Screenshot Assets

    tsingyuai/growth-lab

    Capture authenticated product screenshots through the repository-owned Playwright CDP script and archive them in the invoking loop's Memory.

    2k GitHub stars~583 tokensUpdated 13 days ago
    Auto-check passed
  • Media Crawler

    tsingyuai/growth-lab

    Install, authenticate, configure, operate, and troubleshoot the external MediaCrawler client shared by Douyin, Kuaishou, Bilibili, Weibo, Tieba, and Zhihu collectors.

    2k GitHub stars~731 tokensUpdated 13 days ago
    Auto-check passed
  • Run SEO Page Loop

    tsingyuai/growth-lab

    Run an SEO page observation-action-review loop with persistent Memory by coordinating demand research, page creation, adversarial review, image generation, IndexNow submission, and performance review.

    2k GitHub stars~1.2k tokensUpdated 13 days ago
    Auto-check passed
  • Wechat Article Compose

    tsingyuai/growth-lab

    把一个已确认的选题写成微信公众号长文。锁定复刻锚与用户价值、写出 article.md / wechat.yml / review.md,并通过公众号通用合规检查和人工预览前自检。准备、改写或核验公众号文章时使用;不负责发布,也不产出小红书卡片。

    2k GitHub stars~860 tokensUpdated 13 days ago
    Auto-check passed
  • Wechat Mp Publish

    tsingyuai/growth-lab

    通过微信公众号官方 API 把公众号文章生产单元渲染为微信排版 HTML、生成阅读页预览、上传封面与正文图片并创建草稿;在三重确认下提交发布并查询状态。支持本机直连与固定 IP 远程发布服务两种模式。用户要求预览公众号、同步微信草稿、发布公众号或查询发布状态时使用。

    2k GitHub stars~797 tokensUpdated 13 days ago
    Auto-check: notes
  • Xhs Render Cards

    tsingyuai/growth-lab

    把已批准的小红书草稿、单一分析参考和真实产品素材变成可审查卡片:先完成 DAI 与 image plan,再按确定性、完整效果或可分离图层模式制作,机械验证 PNG 与清单并运行合规检查。精确文字和真实 UI 不交给模型猜测;AI 生图需要单独配置和授权。

    2k GitHub stars~1k tokensUpdated 13 days ago
    Auto-check passed

Questions about Onboard Growth Lab

What does Onboard Growth Lab do?

通过自然语言完成 Growth Lab 的统一依赖审计与配置。检查所有能力所需的 API key、可直接安装的第三方 CLI/Client、浏览器与登录态;拒绝隐含的外部 Skill 或脚本依赖,告诉用户哪些已配置、哪些缺失、从哪里获取,并允许本轮绕过。需要首次配置、检查环境、修复依赖或询问“还缺什么”时使用。. Onboard Growth Lab is an agent skill from tsingyuai/growth-lab.

How do I install Onboard Growth Lab in Claude Code?

Run `npx skills add tsingyuai/growth-lab --skill onboard-growth-lab -a claude-code`. Or copy the skill folder (models/onboard-growth-lab in tsingyuai/growth-lab) into .claude/skills/onboard-growth-lab in your project. Claude Code loads it when a task matches its description.

How do I install Onboard Growth Lab in Codex?

Run `npx skills add tsingyuai/growth-lab --skill onboard-growth-lab -a codex`. Or copy the skill folder (models/onboard-growth-lab in tsingyuai/growth-lab) into .agents/skills/onboard-growth-lab in your project. Codex loads it when a task matches its description.

Can I use Onboard Growth Lab in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add tsingyuai/growth-lab --skill onboard-growth-lab -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/onboard-growth-lab, .gemini/skills/onboard-growth-lab, .github/skills/onboard-growth-lab and .opencode/skills/onboard-growth-lab in your project.

What does Onboard Growth Lab need to run?

Going by SKILL.md and its folder, Onboard Growth Lab needs Python for the scripts in its folder, the command-line tools its instructions call (python and curl) and credentials named BING_WEBMASTER_API_KEY. Our summary lists: Python 3; Node.js; A credential in BING_WEBMASTER_API_KEY.

Does Onboard Growth Lab access the network?

SKILL.md contains no URLs. Its commands use curl, which can reach the network depending on how they are called. This is read from the text; nothing was executed.

Is Onboard Growth Lab safe to install?

Our automated static check of SKILL.md found notes only (mentions a .env file), nothing it rates as a warning. It is not a guarantee. The check reads SKILL.md only: the scripts in the folder are not scanned, so read them before running anything.

What licence does Onboard Growth Lab use?

Onboard Growth Lab is published under the Apache-2.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Onboard Growth Lab use?

About 1k tokens (SKILL.md is roughly 4.2k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 2.5k tokens, read only when the agent opens those files.

What are the alternatives to Onboard Growth Lab?

Skills that share tags, products or a category with Onboard Growth Lab: Xiaohongshu Skills (autoclaw-cc/xiaohongshu-skills, 1.9k stars), Xiaohongshu (zhjiang22/openclaw-xhs, 123 stars), Qiaomu Codex Imagegen (joeseesun/qiaomu-codex-imagegen, 125 stars) and Xhs Auth (autoclaw-cc/xiaohongshu-skills, 1.9k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Onboard Growth Lab?

tsingyuai (a GitHub organization) maintains it in tsingyuai/growth-lab, which has 2,000 GitHub stars. The repository holds 22 skills in this directory. The repository was last updated on September 28, 2026.

Source: tsingyuai/growth-lab on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.