Skip to content
Report library
Purpose / Writing

Dbs Content Skill Security Audit

What the author says it does (original text)

诊断如何把已经确定的选题做成好内容。用户要求设计内容、检查文案或改善内容表达时使用。

Independent security check

Security risks found

Files checked
2
Risks found
4
Could it run dangerous commands?Looks for programs run straight after downloading, remote control of your computer, and hidden commands.No risks found
Could it expose your files or keys?Looks for uploads of files containing passwords or keys, and keys written directly in the code.Risks found: 1
Medium risk

The analysis workflow may submit user material to multiple external AI services

Source references: 3
What we found

The Skill recommends extracting notes, using “various AI” services for deep search, and then having an agent rewrite the material. It does not require consent, removal of personal or commercially sensitive information, or identification of services and retention policies.

Why this matters

Unpublished drafts, client data, internal research, or other sensitive material could be disclosed to several third parties and become subject to their retention or training policies.

The workflow actively recommends sending material to “various AI” systems for research and then using an agent to rewrite it. Because the intake process accepts user drafts, that material could include unpublished or sensitive information. The text does not specify automatic uploads, named services, or executable code, so it does not show that disclosure occurred; however, following it creates a plausible multi-provider disclosure risk. Users can require approval of each service, purpose, retention policy, and redaction method, or restrict processing to local or explicitly authorized tools.

SKILL.md:111In the instructionsOpen original file
- **观点类**:长思考,快输出。想明白了,打开镜头直接拍,不写稿子- **分析类**:get 笔记提取素材 → 各家 AI 做 deep search → 智能体改写成短视频文稿 → 露脸拍摄- **工具类**:直接用 AI 生成清单,人工筛选和排序
Show 2 other places
SKILL.md:42In the instructionsOpen original file
### Phase 1:接收内容问用户:**「你的选题是什么?你打算用什么形式做?(图文/短视频/长视频/直播/文章)如果已经有初稿,发给我。」**如果用户没有选题 → 问他:**「你想做什么内容?先说个大概方向。」**如果用户有选题但没想好形式 → 进入 Phase 2 先做形式匹配。如果用户有初稿 → 跳到 Phase 3 直接诊断。
SKILL.md:106In the instructionsOpen original file
#### 维度 5:AI 辅助创作建议根据内容类型,推荐具体的 AI 工作流:- **观点类**:长思考,快输出。想明白了,打开镜头直接拍,不写稿子- **分析类**:get 笔记提取素材 → 各家 AI 做 deep search → 智能体改写成短视频文稿 → 露脸拍摄- **工具类**:直接用 AI 生成清单,人工筛选和排序- **文风优化**:用 AI 哲学分析拆解自身文风,输出语言风格解构报告
Could it delete files or keep running?Looks for broad file deletion, disk overwrites, and programs set to start automatically.No risks found
Could it bypass safety checks?Looks for skipped website security checks, excessive file access, or actions that skip your approval.No risks found
Could it mislead the AI or hide text?Checks the skill instructions for requests to ignore you, influence the report, or hide text in invisible characters.Risks found: 1
Medium risk

It explicitly frames title optimization as “mind control” and “cognitive hijacking”

Source references: 2
What we found

The Skill does more than analyze audience attention: it defines self-media as mind control and asks whether a title communicates information or performs “cognitive hijacking.” This can make manipulation an optimization objective for the agent.

Why this matters

The user may receive advice encouraging psychological triggers, exaggeration, or emotional manipulation to gain clicks, undermining audience autonomy and the user's reputation.

This is an active guiding principle, not a warning or negative example. It explicitly frames social media and titles as “mind control” and “cognitive hijacking,” then asks the agent to assess whether a title performs that hijacking. If followed, it could make audience manipulation an optimization goal rather than merely improving clarity. A user can ask the author to prohibit deception, coercion, and exploitation of vulnerable audiences, and limit title review to accuracy, relevance, and transparency.

SKILL.md:22In the instructionsOpen original file
### 原则 2:自媒体的本质是精神控制当我们滑动屏幕时,不仅是我们在选择内容,也是内容在塑造我们大脑的神经结构,重写我们的认知模式。封面和标题的本质是认知劫持——特定文字排列组合会触发特定神经机制。
Show 1 other places
SKILL.md:85In the instructionsOpen original file
#### 维度 2:封面/标题诊断- 平铺直叙能不能吸引人?如果不能,价值密度不够- 封面是以图为主还是字为主?字体颜色、有无衬线、冷暖色调- 标题的情绪是什么?是信息传递还是认知劫持?- 判断:✅ 自带吸引力 / ⚠️ 需要优化 / ❌ 需要重做
Could it change links or payment recipients without asking?Looks for forced referral or payment changes combined with instructions to hide the change.Risks found: 2
Medium risk

A mandatory “product first” rule and payment-link request may distort the user's decisions

Source references: 4
What we found

The Skill treats successful WeChat or Alipay payment as a prerequisite for having a product and directs the agent to ask for a payment link when none exists. This commercial premise is not necessary for editorial diagnosis and ignores educational, public-interest, community, or validation-stage goals.

Why this matters

The agent may dismiss valid non-commercial content, push the user to create a sales channel prematurely, or induce unnecessary sharing of a payment URL containing account or merchant identifiers.

The stated purpose is content diagnosis, yet the skill makes successful WeChat or Alipay payment a strict test for having a product and directs the agent to ask for a payment link when none exists. It does not request account credentials or implement a payment operation; the risk is that it may override nonprofit, educational, or validation-stage goals, push premature monetization, and prompt disclosure of a real payment link. Users can require monetization advice only after an explicit commercial goal and without sharing an actual link.

SKILL.md:30In the instructionsOpen original file
### 原则 4:先有产品后有内容做内容之前,要确保你有产品。如果你不能把你的付款链接发给我,并且让我通过微信或者支付宝付款成功,你就是没有产品。内容是为产品服务的,不是为了自嗨。
Show 3 other places
SKILL.md:150In the instructionsOpen original file
- 用户说「AI 写的内容被限流了」→ **「不是 AI 的问题,是你对文字没有洁癖。」**- 用户没有产品就想做内容 → **「先有产品后有内容。你的付款链接在哪?」**- 用户想做情感/成长类内容 → **「这个领域选题容量够,但价值验证极难。大部分做这个方向的人不赚钱。」**
SKILL.md:8In the instructionsOpen original file
你是 dontbesilent 的内容创作诊断 AI。你的任务是帮用户把一个已经确认的选题,变成一个好内容。**你不帮人写内容。你帮人诊断内容该怎么做。** 写是用户自己的事,你负责告诉他方向对不对、形式对不对、表达对不对。
SKILL.md:145In the instructionsOpen original file
## 特别警告(遇到就直说)- 用户纠结标题怎么写 → **「99% 时间应该花在做值得讲的事上,标题只需要 1%。你在纠结的是那 1%。」**- 用户说「我想做干货内容」→ **「所有让你讲干货的博主都是不专业的。你要做的是把事情搞清楚,然后说清楚。」**- 用户说「AI 写的内容被限流了」→ **「不是 AI 的问题,是你对文字没有洁癖。」**- 用户没有产品就想做内容 → **「先有产品后有内容。你的付款链接在哪?」**- 用户想做情感/成长类内容 → **「这个领域选题容量够,但价值验证极难。大部分做这个方向的人不赚钱。」**
Low risk

Content strategy is supported with unsourced growth figures

Source references: 2
What we found

The examples claim three-to-fourfold metric gains after title changes and rapid follower acquisition, then present these figures as practical validation. The supplied material provides no source, sample, baseline, or reproducible conditions.

Why this matters

The user may overestimate likely returns from title or platform changes and commit time, advertising funds, or business resources based on those expectations.

These figures appear in an “inline case library” and are expressly used as practical validation and diagnostic guidance, rather than merely as fictional formatting examples. The supplied material gives no source, sample size, baseline, or applicability conditions, so users relying on it may overestimate expected growth when choosing titles or platforms. The evidence does not establish that the figures are false or reproducible. Users can ask for verifiable sources, metric definitions, and limitations, and for unsupported cases to be labeled as anecdotes.

SKILL.md:159In the instructionsOpen original file
**案例 1:修改封面标题,播放量涨 3 倍**> 修改封面和标题(内容不变):播放量涨 3 倍、互动数涨 3 倍、评论数涨 4 倍、转发数涨 4 倍。封面点击率从 5% 涨到 19%。- 诊断要点:认知劫持(原则 2)的实战验证。内容不变,封面标题决定生死。**案例 2:小红书起号 48 小时 3200 粉**> 9.30 日我在推特起号第一天,1k 关注。10.24 日我在小红书起号,不到 48h,3200 关注。三个关键:账号、内容、运营。- 诊断要点:起号速度取决于内容质量 × 正确理解平台规则(原则 3)。
Show 1 other places
SKILL.md:155In the instructionsOpen original file
## 内联案例库### 典型案例**案例 1:修改封面标题,播放量涨 3 倍**> 修改封面和标题(内容不变):播放量涨 3 倍、互动数涨 3 倍、评论数涨 4 倍、转发数涨 4 倍。封面点击率从 5% 涨到 19%。- 诊断要点:认知劫持(原则 2)的实战验证。内容不变,封面标题决定生死。**案例 2:小红书起号 48 小时 3200 粉**> 9.30 日我在推特起号第一天,1k 关注。10.24 日我在小红书起号,不到 48h,3200 关注。三个关键:账号、内容、运营。- 诊断要点:起号速度取决于内容质量 × 正确理解平台规则(原则 3)。

Inside this skill

7 instruction sections

This is a prompt-only content-diagnosis Skill. The provided files contain no scripts, installation steps, or implementation that directly performs network or file operations. It asks for a topic, intended format, and optional draft, then provides format matching and a five-part diagnosis.

View source
SKILL.md:42In the instructionsOpen original file
### Phase 1:接收内容问用户:**「你的选题是什么?你打算用什么形式做?(图文/短视频/长视频/直播/文章)如果已经有初稿,发给我。」**如果用户没有选题 → 问他:**「你想做什么内容?先说个大概方向。」**如果用户有选题但没想好形式 → 进入 Phase 2 先做形式匹配。如果用户有初稿 → 跳到 Phase 3 直接诊断。
SKILL.md:74In the instructionsOpen original file
### Phase 3:五维诊断对用户的内容(或内容计划)做五个维度的诊断:

The Skill says it diagnoses rather than ghostwrites and asks for a recommended platform, issue ratings, and one concrete action. Its guidance is explicitly oriented toward product monetization, rather than solely offering neutral editorial improvement.

View source
SKILL.md:8In the instructionsOpen original file
你是 dontbesilent 的内容创作诊断 AI。你的任务是帮用户把一个已经确认的选题,变成一个好内容。**你不帮人写内容。你帮人诊断内容该怎么做。** 写是用户自己的事,你负责告诉他方向对不对、形式对不对、表达对不对。**前提:用户应该已经有一个明确的选题。** 如果没有,先帮他理清楚想做什么内容。
SKILL.md:94In the instructionsOpen original file
- 能不能一句话说清楚核心观点?- 有没有在用 99% 的时间包装 1% 的内容?- 是在服务产品变现,还是在自嗨?- 判断:✅ 高效 / ⚠️ 有冗余 / ❌ 本末倒置

After diagnosis, the Skill may suggest invoking a separate `/dbs` command, which is described as reading the current results and the user's stated goal. The supplied source does not contain that command's implementation, so its access scope and subsequent processing cannot be assessed from this evidence.

View source
SKILL.md:198In the instructionsOpen original file
## 留档(可选)五维诊断走完、结论明确之后,提一句:> 这次诊断完成后,如果你想保存结论或继续推进,输入 `/dbs`。它会读取本轮结果和你的明确目标,判断当前该做什么。只在诊断结束时提一次,不要每个维度走完都重复。
SKILL.md:216In the instructionsOpen original file
完成当前任务后直接结束。只有用户明确询问下一步,且当前环境已经安装 `/dbs` 时,简短提示:「下一步不确定时,可以输入 `/dbs`。」
Start here · InstructionsSKILL.md
dbs-content
Lines connect the instruction file to its sections, not an observed execution order. Select a section to read the source.
Files and check records2 files

Coverage and gaps

Content covered in each file

These are the source ranges included in this check, not a guarantee that every issue has been resolved.

  • SKILL.mdFull text included
  • agents/openai.yamlFull text included

This report is for the version above. We read the available code and instructions without running the skill or checking extra packages it installs. This is not a promise of safety: a different version or setup may behave differently.

  • SKILL.mdInstructions
  • agents/openai.yamlSupporting file
Lines read
222
File checksum (to compare versions)
3bd1827f89e18fbcafb93ba822161b078b6a1f56d105b0f43f832e6c2302f1ca