taltara/capmark
taltara★ 1TypeScript最后同步: 2026-08-20
Capability manifests for AI agent plugins. Declare what a plugin may do, in Markdown, and check it.
README 摘要
capmark Capability manifests for AI agent plugins. A plugin declares what it may do, in Markdown, and a checker holds it to that. Installing a plugin runs someone else's code with your permissions — it can read your files, spend your credentials, and reach the network. Today the only thing standing between you and that is a README and your own reading of it. Scanners look for known-bad code after the fact. capmark is the other half: the plugin says what it needs up front, in a form a machine can check. cap grant fs:read scope=workspace grant net:fetch cap never proc:spawn require approval for fs:read It is Markdown first. A reader that has never heard of capmark still renders a legible security README — the worst case for an unsupported manifest is documentation. The rule that keeps this honest Every capability in the vocabulary must name a mechanism that actually stops it. This is not a style preference. DSH discussion 174 recorded a deny rule on rm -rf being walked around with rm followed by rmdir in the same run. Patterns deny spellings. Capabilities deny outcomes. Denying a whole tool is not pattern matching — there is no way to rephrase your way to bash once bash is off th…
在 GitHub 查看完整 README →分类
🌊 The original agent meta-harness. Deploy intelligent multi-player swarms, coordinate autonomous workflows, and build conversational AI systems. Features adaptive memory, self-learning intelligence, RAG integration, and native Claude Code / Codex / Hermes and many more Integrated
★ 68,716
volcengine/OpenVikingSelf-evolving Context Database for AI Agents. Unify Agent Memory, Knowledge RAG and Skills.
★ 31,761
titanwings/colleague-skill将冰冷的离别化为温暖的 Skill,欢迎加入数字生命1.0!Transforming cold farewells into warm skills? It's giving rebirth era. Welcome to Digital Life 1.0. 🫶
★ 23,757