winskill
Windows 服务器运维工具箱 - 磁盘体检(统一入口)、临时文件清理、IIS 站点管理、批量文件操作、服务状态监控、Windows Update 诊断、实时性能监控、安全审计、注册表启动项审计、磁盘健康检测、网络端口监控、事件日志诊断、已安装程序管理、用户会话监控、计划任务审计、文件共享审计、DNS网卡诊断、SSL证书过期检测、防火墙规则审计、服务崩溃恢复状态、系统文件修复、存储池管理、备份状态检查、Docker容器管理、K8s集群监控、自动化修复向导、性能基线与趋势分析、等保合规检查清单、远程多服务器管理、日志轮转、模块索引、轻量常驻监控、趋势预测、告警推送、模糊重复检测、三级清理建议。只读分析+安全确认,绝不误删文件,完全免费离线运行。 Skill: winskill Owner: fyniujin Summary: Windows 服务器运维工具箱 - 磁盘体检(统一入口)、临时文件清理、IIS 站点管理、批量文件操作、服务状态监控、Windows Update 诊断、实时性能监控、安全审计、注册表启动项审计、磁盘健康检测、网络端口监控、事件日志诊断、已安装程序管理、用户会话监控、计划任务审计、文件共享审计、DNS网卡诊断、SSL证书过期检测、防火墙规则审计、服务崩溃恢复状态、系统文件修复、存储池管理、备份状态检查、Docker容器管理、K8s集群监控、自动化修复向导、性能基线与趋势分析、等保合规检查清单、远程多服务器管理、日志轮转、模块索引、轻量常驻监控、趋势预测、告警推送、模糊重复检测、三级清理建议。只读分析+安全确认,绝不误删文件,完全免费离线运行。 Tags: latest:3.4.0 Version history: v3.4.0 | 2026-10
Rank
62
Safety
84
Downloads
1.6k
Updated
Oct 10, 2026
Version
3.4.0
Source
CLAWHUB
About
What it does, and when to use it.
Capability contract not published. No trust telemetry is available yet. 1.6K downloads reported by the source. Last updated 10/10/2026.
Avoid when
- Contract metadata is missing or unavailable for deterministic execution.
Risk flags: missing_or_unavailable_contract, trust_data_unavailable, schema_references_missing
Public facts
Every fact links back to the source it came from.
- Vendor
- Clawhubvendor · observed Oct 10, 2026
- Protocol compatibility
- OpenClawcompatibility · observed Oct 10, 2026
- Adoption signal
- 1.6K downloadsadoption · observed Oct 10, 2026
- Latest release
- 3.4.0release · observed Oct 9, 2026
- Handshake status
- UNKNOWNsecurity
Install and run
Setup complexity: low.
clawhub skill install s177r8w7p1d7cpbys9bn33kwhs89d0xw:winskill- Setup complexity is classified as HIGH. You must provision dedicated cloud infrastructure or an isolated VM. Do not run this directly on your local workstation.
- Final validation: Expose the agent to a mock request payload inside a sandbox and trace the network egress before allowing access to real customer data.
Contract: missing
curl -s "https://www.xpersona.co/api/v1/agents/clawhub-fyniujin-winskill/snapshot"
Documentation
CLAWHUB
151,780 characters of source documentation, loaded on request.
Extracted files
5 files captured from the source.
SKILL.md
---
name: winskill
description: "Windows 服务器运维工具箱 - 磁盘体检(统一入口)、临时文件清理、IIS 站点管理、批量文件操作、服务状态监控、Windows Update 诊断、实时性能监控、安全审计、注册表启动项审计、磁盘健康检测、网络端口监控、事件日志诊断、已安装程序管理、用户会话监控、计划任务审计、文件共享审计、DNS网卡诊断、SSL证书过期检测、防火墙规则审计、服务崩溃恢复状态、系统文件修复、存储池管理、备份状态检查、Docker容器管理、K8s集群监控、自动化修复向导、性能基线与趋势分析、等保合规检查清单、远程多服务器管理、日志轮转、模块索引、轻量常驻监控、趋势预测、告警推送、模糊重复检测、三级清理建议。只读分析+安全确认,绝不误删文件,完全免费离线运行。"
version: 3.4.0
---
# Winskill — Windows 服务器运维工具箱
## 快速开始
**直接对 AI 说就行,不用记命令。**
| 你想做什么 | 直接对 AI 说 |
|-----------|-------------|
| 看磁盘空间 | `"帮我扫一下 D 盘大文件"` |
| 磁盘体检(推荐) | `"帮我看看磁盘"` |
| 清理临时文件 | `"看看我电脑的临时文件"` |
| 检查 IIS | `"我的 IIS 站点还活着吗?"` |
| 检测重复文件 | `"帮我找下重复文件"` |
| 检查服务状态 | `"看下数据库和 IIS 服务有没有挂"` |
| Windows Update 状态 | `"Windows Update 正常吗?有积压补丁吗?"` |
| 服务器卡顿定位 | `"服务器变卡了,帮我看看是什么原因"` |
| 检查有没有被入侵 | `"帮我查一下有没有异常登录"` |
| 检查可疑启动项 | `"有没有可疑的自启动程序"` |
| 磁盘健康状态 | `"硬盘还健康吗?有没有坏道"` |
| 网络连接监控 | `"谁在连我的服务器"` |
| 系统日志哪里错了 | `"系统日志有没有最近的错误"` |
| 服务器装了什么程序 | `"看看系统安装了哪些软件"` |
| 谁在服务器上 | `"当前有谁登录了服务器"` |
| 检查计划任务 | `"有没有可疑的计划任务"` |
| 文件共享审计 | `"有哪些共享文件夹,权限安全吗"` |
| DNS / 网卡诊断 | `"DNS 解析正常吗"` |
| 搞不定了 | `"我遇到报错了,帮我看看"` |
> ⚠️ **AI 必须遵守**:凡涉及删除、停止服务、修改系统的操作,必须先展示操作清单,等用户明确说"确认执行"后才可执行。
---
## 安全声明
| 保护项 | 方式 |
|-------|------|
| 系统目录保护 | 绝不操作 `C:\Windows`、`C:\Program Files` 等 |
| 删除必须确认 | 先展示受影响文件,等用户说"确认清理"后才执行 |
| 回收站优先 | 删除用 `Shell.Application` 回收站 API |
| 只读诊断 | 所有分析命令不修改任何文件/服务/注册表 |
| 排除保护 | `pagefile.sys`、`hiberfil.sys` 等系统文件不可操作 |
| 注册表保护 | 注册表分析只读,任何修改需双重确认 |
| 日志读取保护 | 事件日志只读查看,不修改任何日志记录 |
---
## 功能模块
### 📋 日志记录与轮转
```powershell
function Write-WinskillLog {
param([string]$Message)
$logDir = "$env:USERPROFILE\.workbuddy\output\winskill"
$logFile = Join-Path $logDir "winskill.log"
New-Item -ItemType Directory -Force -Path $logDir | Out-Null
$timestamp = Get-Date -Format "yyyy-MM-dd HH:mm:ss"
"$timestamp $Message" | Out-File $logFile -Append -Encoding utf8
if (Test-Path $logFile) {
$size = (Get-Item $logFile).Length
if ($size -gt 10MB) {
$timestamp = Get-Date -Format "yyyyMMddHHmmss"
Move-Item $logFile "winskill.log.$timestamp" -Force
}
}
Get-ChildItem $logDir -Filter "winskill.log.*" | Where-Object {
$_.LastWriteTime -lt (Get-Date).AddDays(-7)
} | Remove-Item -Force
}
```
### 📋 模块索引(一键列出所有可用操作)
```powershell
Write-Host "`n📋 Winskill 3.4.0 - 模块索引(共 34 个模块)"
Write-Host ("=" * 60)
Write-Host ("{0,-25} {1,-35}" -f "模块", "用途")
Write-Host ("-" * 60)
$modules = @(
"模块 1: 磁盘空间分析 - 扫大文件/目录占用",
"模块 2: 大文件重复检测 - 找重复文件",
"模块 3: 临时文件安全清理 - 清理临时文件",
"模块 4: IIS 站点管理 - IIS 站点/应用池状态",
"模块 5: 服务状态监控 - Windows 服务状态",
"模块 6: 批量文件操作 - 批量重命名/移动/复制",
"模块 7: 目录磁盘使用报告 - 目录大小报告",
"模块 8: Windows Update 服务状态 - 更新服务/缓存",
"模块 9: 实时性能监控 - CPU/内存/磁盘/网络",
"模块 10: 安全审计与日志分析 - 暴力破解/特权操作",
"模块 11: 注册表与启动项安全审计 - 启动项/WMI",
"模块 12: 磁盘健康状态检测 - SMART/坏道/温度",
"模块 13: 网络连接与端口监控 - 连接/端口/防火墙",
"模块 14: Windows 事件日志诊断 - 系统/应用日志",
"模块 15: 已安装程序与补丁管理 - 程序/补丁清单",
"模块 1_meta.json
{
"ownerId": "kn7chdrwbdhaqkwajcyhtfvjx989ddb1",
"slug": "winskill",
"version": "3.4.0",
"publishedAt": 1791514376371
}references/compliance/cis-benchmark.yaml
---
version: "1.0.0"
updated: "2026-08-24"
standard: "CIS Benchmark"
description: "Center for Internet Security - Windows Server 安全基线(精选关键控制项)"
---
items:
- id: "CIS-1.1.1"
category: 密码策略
item: 密码最小长度≥14
level: Level 1
module: module-05
check: "net accounts | Select-String 'Minimum password length'"
expected: ">= 14"
- id: "CIS-1.1.2"
category: 密码策略
item: 密码复杂度已启用
level: Level 1
module: module-05
check: "Get-ItemProperty -Path 'HKLM:\\SYSTEM\\CurrentControlSet\\Control\\Lsa' -Name PasswordComplexity"
expected: "PasswordComplexity = 1"
- id: "CIS-2.2.1"
category: 账户策略
item: Guest 账户已禁用
level: Level 1
module: module-16
check: "Get-LocalUser -Name 'Guest' | Select-Object Enabled"
expected: "Enabled = False"
- id: "CIS-2.3.1.1"
category: 登录策略
item: 限制空密码登录
level: Level 1
module: module-16
check: "Get-ItemProperty -Path 'HKLM:\\SYSTEM\\CurrentControlSet\\Control\\Lsa' -Name LimitBlankPasswordUse"
expected: "LimitBlankPasswordUse = 1"
- id: "CIS-5.1"
category: 系统服务
item: Windows Update 服务运行中
level: Level 1
module: module-08
check: "Get-Service -Name wuauserv | Select-Object Status"
expected: "Status = Running"
- id: "CIS-9.1"
category: 防火墙
item: 所有防火墙配置文件已启用
level: Level 1
module: module-21
check: "Get-NetFirewallProfile | Select-Object Name, Enabled"
expected: "全部 Enabled = True"
- id: "CIS-17.1"
category: 审计策略
item: 登录事件审计(成功+失败)
level: Level 1
module: module-10
check: "auditpol /get /subcategory:'Logon'"
expected: "Success and Failure"references/compliance/dp-2.0.yaml
---
version: "1.0.0"
updated: "2026-08-24"
standard: "等保 2.0"
description: "信息安全技术 网络安全等级保护基本要求(GB/T 22239-2019)"
---
items:
- id: "DP-2.0-001"
category: 密码策略
item: 密码最小长度≥8
level: 必级
module: module-05
check: "net accounts | Select-String 'Minimum password length'"
expected: ">= 8"
- id: "DP-2.0-002"
category: 密码策略
item: 密码最长使用期限≤90天
level: 必级
module: module-05
check: "net accounts | Select-String 'Maximum password age'"
expected: "<= 90 或 Non-never"
- id: "DP-2.0-003"
category: 密码策略
item: 密码历史记录≥5
level: 必级
module: module-05
check: "net accounts | Select-String 'Password history length'"
expected: ">= 5"
- id: "DP-2.0-004"
category: 账户锁定
item: 锁定阈值≤5次
level: 必级
module: module-05
check: "net accounts | Select-String 'Lockout threshold'"
expected: "<= 5 且非 Never"
- id: "DP-2.0-005"
category: 账户锁定
item: 锁定时间≥15分钟
level: 必级
module: module-05
check: "net accounts | Select-String 'Lockout duration'"
expected: ">= 15 且非 Never"
- id: "DP-2.0-006"
category: 审计日志
item: 登录事件审计(成功+失败)
level: 必级
module: module-10
check: "auditpol /get /subcategory:'Logon'"
expected: "Success and Failure"
- id: "DP-2.0-007"
category: 审计日志
item: 对象访问审计(成功+失败)
level: 必级
module: module-10
check: "auditpol /get /subcategory:'Object Access'"
expected: "Success and Failure"
- id: "DP-2.0-008"
category: 防火墙
item: 所有配置文件已启用防火墙
level: 必级
module: module-21
check: "Get-NetFirewallProfile | Select-Object Name, Enabled"
expected: "全部 Enabled = True"
- id: "DP-2.0-009"
category: 补丁更新
item: 最近 30 天内有补丁更新
level: 必级
module: module-15
check: "Get-HotFix | Sort-Object InstalledOn -Descending | Select-Object -First 1"
expected: "InstalledOn 距今 <= 30 天"
- id: "DP-2.0-010"
category: 远程桌面
item: RDP 网络级身份验证(NLA)
level: 必级
module: module-16
check: "Get-ItemProperty -Path 'HKLM:\\System\\CurrentControlSet\\Control\\Terminal Server\\WinStations\\RDP-Tcp' -Name UserAuthentication"
expected: "UserAuthentication = 1"references/modules/module-01-磁盘空间分析.md
---
id: module-01
name: 磁盘空间分析
description: 扫描指定路径,找出占用空间的大文件和目录。
keywords: ['扫一下 C 盘大文件', 'D 盘哪个最占空间']
permission: admin
mode: readonly
subset: disk-management
---
### 模块 1:磁盘空间分析
> ⚠️ 此模块已合并到 **模块 34「磁盘体检」**。直接对 AI 说「帮我看看磁盘」即可获取完整报告。本模块代码保留,避免外部脚本失效。
<details>
<summary>📋 展开查看:模块 1:磁盘空间分析</summary>
**用途**:扫描指定路径,找出占用空间的大文件和目录。
**常你说**:`"扫一下 C 盘大文件"` / `"D 盘哪个最占空间"`
```powershell
$scanPath = "C:\" # ← 改成你要扫的盘符或目录
Get-ChildItem -Path $scanPath -Recurse -File -ErrorAction SilentlyContinue |
Where-Object { $_.Length -gt 100MB } |
Sort-Object Length -Descending |
Select-Object -First 50 @{N='路径';E={$_.FullName}},
@{N='大小(GB)';E={[math]::Round($_.Length/1GB,2)}},
@{N='最后修改';E={$_.LastWriteTime}}
```
**风险等级**:🟢 无(只读)
| 报错 | 含义 | 解决 |
|-----|------|-----|
| `Access to the path 'xxx' is denied` | 权限不足 | 管理员身份运行 PowerShell |
| `Could not find a part of the path` | 目录不存在 | 确认路径 |
</details>
[↑ 返回顶部](#module-1)
---
<a name="module-2"></a>AionUi
Free, local, open-source 24/7 Cowork app and OpenClaw for Gemini CLI, Claude Code, Codex, OpenCode, Qwen Code, Goose CLI, Auggie, and more | 🌟 Star if you like it!
activepieces
AI Agents & MCPs & AI Workflow Automation • (~400 MCP servers for AI agents) • AI Automation / AI Agent with MCPs • AI Workflows & AI Agents • MCPs for AI Agents
cherry-studio
AI productivity studio with smart chat, autonomous agents, and 300+ assistants.
CopilotKit
The Frontend for Agents & Generative UI. React + Angular
Machine-readable data
The same record, as JSON, for agents and crawlers.
{
"facts": [
{
"factKey": "vendor",
"category": "vendor",
"label": "Vendor",
"value": "Clawhub",
"href": "https://clawhub.ai/fyniujin/skills/winskill",
"sourceUrl": "https://clawhub.ai/fyniujin/skills/winskill",
"sourceType": "profile",
"confidence": "medium",
"observedAt": "2026-10-10T07:34:50.694Z",
"isPublic": true
},
{
"factKey": "protocols",
"category": "compatibility",
"label": "Protocol compatibility",
"value": "OpenClaw",
"href": "https://www.xpersona.co/api/v1/agents/clawhub-fyniujin-winskill/contract",
"sourceUrl": "https://www.xpersona.co/api/v1/agents/clawhub-fyniujin-winskill/contract",
"sourceType": "contract",
"confidence": "medium",
"observedAt": "2026-10-10T07:34:50.694Z",
"isPublic": true
},
{
"factKey": "traction",
"category": "adoption",
"label": "Adoption signal",
"value": "1.6K downloads",
"href": "https://clawhub.ai/fyniujin/winskill",
"sourceUrl": "https://clawhub.ai/fyniujin/winskill",
"sourceType": "profile",
"confidence": "medium",
"observedAt": "2026-10-10T07:34:50.694Z",
"isPublic": true
},
{
"factKey": "latest_release",
"category": "release",
"label": "Latest release",
"value": "3.4.0",
"href": "https://clawhub.ai/fyniujin/winskill",
"sourceUrl": "https://clawhub.ai/fyniujin/winskill",
"sourceType": "release",
"confidence": "medium",
"observedAt": "2026-10-09T02:52:56.371Z",
"isPublic": true
},
{
"factKey": "handshake_status",
"category": "security",
"label": "Handshake status",
"value": "UNKNOWN",
"href": "https://www.xpersona.co/api/v1/agents/clawhub-fyniujin-winskill/trust",
"sourceUrl": "https://www.xpersona.co/api/v1/agents/clawhub-fyniujin-winskill/trust",
"sourceType": "trust",
"confidence": "medium",
"observedAt": null,
"isPublic": true
}
],
"events": [
{
"eventType": "release",
"title": "Release 3.4.0",
"description": "winskill 3.4.0 - 新增“磁盘体检”统一入口(模块34),整合磁盘空间分析、重复检测、目录统计等功能,统一入口一键体检。 - 增加模糊重复检测(精确哈希+文件名相似度+大小近似,阈值可配置)。 - 清理建议支持三级分类(可安全删除/需人工确认/严禁操作),对齐实际安全分级。 - 支持生成磁盘体检HTML报告,所有核心逻辑支持单文件离线运行。 - 模块1/2/7保留,功能转发至新体检入口,兼容老脚本调用。 - 移除旧脚本与说明文件,补充新功能文档。",
"href": "https://clawhub.ai/fyniujin/winskill",
"sourceUrl": "https://clawhub.ai/fyniujin/winskill",
"sourceType": "release",
"confidence": "medium",
"observedAt": "2026-10-09T02:52:56.371Z",
"isPublic": true
}
]
}Record generated Oct 10, 2026.
