Real Skill packageSource verifiedClawHub registry

alibabacloud-mcp-connector

Operate, run O&M for, and manage Alibaba Cloud through local commands, with no MCP configuration needed. CallCLI runs Alibaba Cloud CLI/API commands to create, read, update and delete resources of any product; RunScript runs Python batch scripts; RunIaC runs Terraform orchestration; plus API retrieval and official-document retrieval to follow the best-practice path. Use this whenever the user needs to do anything with Alibaba Cloud — inspect or change ECS, OSS, VPC, RDS, SLS resources, run batch operations, provis…

Identity and source

Publisher attributionalibabacloud-skills-teamregistry owner unverified by skillvetai
Functional categoryAgent Engineering, Security & Governanceautomatically inferred · 70% rule confidence
Package forminstruction with code10 recorded files
Canonical sourceClawHub registryclawhub:sdk-team:alibabacloud-mcp-connector
Open canonical source ↗

Platform declarations

These states come from the source or distribution context. None of the entries below are SkillVetAI compatibility test results.

OpenClawnative officialProvenance: registry distribution

Independent structural checks

These checks parse the fixed package against dated platform rules. They do not execute the Skill or verify task behavior.

Claude Codepasses structure
Checker 0.1.0 · agent-skills-2026-08-13+claude-code-docs-2026-08-13 · 9/9/2026.claude/skills/alibabacloud-mcp-connector

Runtime, accounts, dependencies, permissions, network behavior and task quality remain untested.

OpenAI Codexpasses structure
Checker 0.1.0 · agent-skills-2026-08-13+codex-docs-2026-08-13 · 9/9/2026.agents/skills/alibabacloud-mcp-connector

Runtime, accounts, dependencies, permissions, network behavior and task quality remain untested.

OpenClawpasses structure
Checker 0.1.0 · agent-skills-2026-08-13+openclaw-docs-2026-08-13 · 9/9/2026skills/alibabacloud-mcp-connector

Runtime, accounts, dependencies, permissions, network behavior and task quality remain untested.

Installation and inspection

This command is recorded from the source ecosystem and resolves the registry's latest release. The fixed release shown on this page should be inspected before adoption.

clawhub install @sdk-team/alibabacloud-mcp-connector
clawhub inspect @sdk-team/alibabacloud-mcp-connector --version 1.0.0

Security evidence

SkillVetAI static result: high signal

This automated, non-executing scan is bound to this release hash. It is not a safety certification and may contain false positives or false negatives.

Status
completed
Coverage
full text content
Files
10 / 10 inspected as text
Checked
9/9/2026, 4:42:48 PM
Scanner
0.1.3
Policy
1.0.3
4 automated findings
highRemote content is piped directly to a shellSKILL.md:139 · confidence 98%curl -LsSf https://astral.sh/uv/install.sh | sh
highRemote content is piped directly to a shellscripts/mcpx.py:46 · confidence 98%curl -LsSf https://astral.sh/uv/install.sh | sh
mediumRemote installer is downloaded without an integrity checkSKILL.md:139 · confidence 70%curl -LsSf https://astral.sh/uv/install.sh
mediumRemote installer is downloaded without an integrity checkscripts/mcpx.py:46 · confidence 70%curl -LsSf https://astral.sh/uv/install.sh
2 High/Critical review queue entries
STATIC_DOWNLOAD_PIPE_TO_SHELLpending
STATIC_DOWNLOAD_PIPE_TO_SHELLpending
Open human review queue →
5 inferred permission indicators
  • shell execution — automatically inferred
  • network access — automatically inferred
  • filesystem read — automatically inferred
  • filesystem write — automatically inferred
  • credential access — automatically inferred
7 dependency and API indicators
  • api: aliyuncli.alicdn.com
  • api: astral.sh
  • api: clawhub.ai
  • api: help.aliyun.com
  • api: ram.console.aliyun.com
  • api: signin.alibabacloud.com
  • api: signin.aliyun.com
External clawhub result: suspicious

This is registry-supplied evidence for the recorded release, not an independent SkillVetAI scan. Check the canonical source for the full report, scanner versions, scope, and current moderation state.

Evidence checked
9/9/2026, 11:57:36 AM
Release binding
Matches this record
  • vt: clean
  • skillspector: suspicious
  • llm: suspicious

Recorded files

The catalog stores hashes and an inventory summary for change detection. It does not republish the package contents.

Package content hashsha256:7b57d63076f57db2a9818a5e4f30cd277aecb0cdede0799f5a17e92d1d242762
Show up to 10 recorded paths
  • references/examples.md
  • references/manifest.json
  • references/ram-policies.md
  • references/tool-reference.md
  • references/unfamiliar-product-checklist.md
  • scripts/gen_tool_reference.py
  • scripts/mcpx.py
  • scripts/to_json.py
  • skill-card.md
  • SKILL.md

Source changelog

Initial release of alibabacloud-mcp-connector: - Enables operating, managing, and performing O&M tasks on Alibaba Cloud from local commands without MCP configuration. - Supports Alibaba Cloud resource CRUD operations via CLI/API, Python batch scripts, and Terraform infrastructure orchestration. - Mandates inclusion of a user-agent flag with session/version for all remote API calls, with robust observability requirements. - Provides tools for API/document discovery, batch and multi-step processes, infrastructure changes, and resource operation—all routed via `mcpx`. - Implements confirmation requirements before taking any action that changes or costs cloud resources. - Comprehensive documentation and best-practice workflow guidance included for safe and proper use.