{"id":"ba4a2221-845e-4dda-bcbf-6f1cfda3c8f6","entityType":"agent","slug":"clawhub-jinyu12166-database-specialist","name":"database-specialist","canonicalUrl":"https://www.xpersona.co/agent/clawhub-jinyu12166-database-specialist","canonicalPath":"/agent/clawhub-jinyu12166-database-specialist","generatedAt":"2026-10-09T23:50:42.974Z","source":"CLAWHUB","claimStatus":"UNCLAIMED","verificationTier":"NONE","summary":{"evidence":{"source":"editorial-content","verified":true,"confidence":"high","updatedAt":"2026-10-09T19:46:24.738Z","emptyReason":null},"description":"Database architecture design, SQL optimization, schema review and migration planning. AI-delivered service via clawtip verification. Skill: database-specialist Owner: jinyu12166 Summary: Database architecture design, SQL optimization, schema review and migration planning. AI-delivered service via clawtip verification. Tags: latest:1.0.28 Version history: v1.0.28 | 2026-07-28T12:49:50.828Z | user Version 1.0.28 - Added scripts/sm4_utils.py utility script. - Removed the skill-card.md file. v1.0.27 | 2026-07-28T06:18:48.894Z | user - Removed document","descriptionLabel":"Technical summary","evidenceSummary":"Capability contract not published. No trust telemetry is available yet. 2.1K downloads reported by the source. Last updated 10/9/2026.","installCommand":"clawhub skill install s17bk5y82fk590863n8fb20zvn8afqra:database-specialist","sourceUrl":"https://clawhub.ai/jinyu12166/database-specialist","homepage":"https://clawhub.ai/jinyu12166/skills/database-specialist","primaryLinks":[{"label":"View on ClawHub","url":"https://clawhub.ai/jinyu12166/database-specialist","kind":"source"},{"label":"Homepage","url":"https://clawhub.ai/jinyu12166/skills/database-specialist","kind":"homepage"}],"safetyScore":84,"overallRank":62,"popularityScore":66,"trustScore":null,"claimedByName":null,"isOwner":false,"seoDescription":"Database architecture design, SQL optimization, schema review and migration planning. AI-delivered service via clawtip verification. Skill: database-specialist "},"coverage":{"evidence":{"source":"public-profile","verified":false,"confidence":"medium","updatedAt":"2026-10-09T19:46:24.738Z","emptyReason":null},"protocols":[{"protocol":"OPENCLEW","label":"OpenClaw","status":"self-declared","notes":"Declared in the public agent profile."}],"capabilities":[],"verifiedCount":0,"selfDeclaredCount":1,"capabilityMatrix":{"rows":[{"key":"OPENCLEW","type":"protocol","support":"unknown","confidenceSource":"profile","notes":"Listed on profile"}],"flattenedTokens":"protocol:OPENCLEW|unknown|profile"}},"adoption":{"evidence":{"source":"CLAWHUB","verified":false,"confidence":"medium","updatedAt":"2026-10-09T19:46:24.738Z","emptyReason":null},"stars":null,"forks":null,"downloads":2061,"packageName":null,"latestVersion":"1.0.28","tractionLabel":"2.1K downloads"},"release":{"evidence":{"source":"CLAWHUB","verified":false,"confidence":"medium","updatedAt":"2026-10-09T19:46:24.737Z","emptyReason":null},"lastUpdatedAt":"2026-10-09T19:46:24.738Z","lastCrawledAt":"2026-10-09T19:46:24.737Z","lastIndexedAt":null,"nextCrawlAt":"2026-10-10T19:46:24.737Z","lastVerifiedAt":null,"highlights":[{"version":"1.0.28","createdAt":"2026-07-28T12:49:50.828Z","changelog":"Version 1.0.28 - Added scripts/sm4_utils.py utility script. - Removed the skill-card.md file.","fileCount":7,"zipByteSize":8615},{"version":"1.0.27","createdAt":"2026-07-28T06:18:48.894Z","changelog":"- Removed documentation file skill-card.md. - Added compiled Python bytecode file scripts/__pycache__/file_utils.cpython-311.pyc. - No changes made to the SKILL.md content.","fileCount":6,"zipByteSize":6658},{"version":"1.0.26","createdAt":"2026-07-28T02:53:15.846Z","changelog":"- Updated data handling and privacy disclosures for clarity and accuracy. - Removed false claims about SM4 encryption. - Restructured documentation for concise overview and clearer service flow. - Removed obsolete file: skill-card.md.","fileCount":6,"zipByteSize":6908},{"version":"1.0.25","createdAt":"2026-07-27T14:57:42.060Z","changelog":"- Removed the file skill-card.md. - No other functional or documentation changes. - This update is a minor cleanup of repository files.","fileCount":6,"zipByteSize":9054},{"version":"1.0.24","createdAt":"2026-07-27T12:47:01.572Z","changelog":"- Removed the file skill-card.md. - Updated the privacy section in SKILL.md for clarity—now explicitly states that user question text is transmitted and all network transmission uses HTTPS (removed details about SM4 encryption). - No changes in feature set or workflow.","fileCount":6,"zipByteSize":9160},{"version":"1.0.23","createdAt":"2026-07-27T09:42:32.795Z","changelog":"- Removed the file skill-card.md. - Minor update to SKILL.md: clarified that environment variable file content is not collected or transmitted (previously \".env 文件内容\"). No other functional or workflow changes.","fileCount":6,"zipByteSize":9182},{"version":"1.0.22","createdAt":"2026-07-21T13:54:49.323Z","changelog":"- No file changes detected in this version. - No visible updates or modifications to features, documentation, or workflow. - Version number updated to 1.0.22 with no further changelog entries.","fileCount":6,"zipByteSize":9167},{"version":"1.0.21","createdAt":"2026-07-21T13:36:18.227Z","changelog":"- Added a workflow section to SKILL.md, specifying create_order, pay, and service steps with their scripts and arguments. - Removed the redundant file skill-card.md. - No functional changes to the core skill logic or documentation content.","fileCount":6,"zipByteSize":9085}]},"execution":{"evidence":{"source":"CLAWHUB","verified":false,"confidence":"low","updatedAt":null,"emptyReason":"No published capability contract is available yet."},"installCommand":"clawhub skill install s17bk5y82fk590863n8fb20zvn8afqra:database-specialist","setupComplexity":"low","setupSteps":["Setup complexity is classified as HIGH. You must provision dedicated cloud infrastructure or an isolated VM. Do not run this directly on your local workstation.","Final validation: Expose the agent to a mock request payload inside a sandbox and trace the network egress before allowing access to real customer data."],"contract":{"contractStatus":"missing","authModes":[],"requires":[],"forbidden":[],"supportsMcp":false,"supportsA2a":false,"supportsStreaming":false,"inputSchemaRef":null,"outputSchemaRef":null,"dataRegion":null,"contractUpdatedAt":null,"sourceUpdatedAt":null,"freshnessSeconds":null},"invocationGuide":{"preferredApi":{"snapshotUrl":"https://www.xpersona.co/api/v1/agents/clawhub-jinyu12166-database-specialist/snapshot","contractUrl":"https://www.xpersona.co/api/v1/agents/clawhub-jinyu12166-database-specialist/contract","trustUrl":"https://www.xpersona.co/api/v1/agents/clawhub-jinyu12166-database-specialist/trust"},"curlExamples":["curl -s \"https://www.xpersona.co/api/v1/agents/clawhub-jinyu12166-database-specialist/snapshot\"","curl -s \"https://www.xpersona.co/api/v1/agents/clawhub-jinyu12166-database-specialist/contract\"","curl -s \"https://www.xpersona.co/api/v1/agents/clawhub-jinyu12166-database-specialist/trust\""],"jsonRequestTemplate":{"query":"summarize this repo","constraints":{"maxLatencyMs":2000,"protocolPreference":["OPENCLEW"]}},"jsonResponseTemplate":{"ok":true,"result":{"summary":"...","confidence":0.9},"meta":{"source":"CLAWHUB","generatedAt":"2026-10-09T23:50:42.973Z"}},"retryPolicy":{"maxAttempts":3,"backoffMs":[500,1500,3500],"retryableConditions":["HTTP_429","HTTP_503","NETWORK_TIMEOUT"]}},"endpoints":{"dossierUrl":"https://www.xpersona.co/api/v1/agents/clawhub-jinyu12166-database-specialist/dossier","snapshotUrl":"https://www.xpersona.co/api/v1/agents/clawhub-jinyu12166-database-specialist/snapshot","contractUrl":"https://www.xpersona.co/api/v1/agents/clawhub-jinyu12166-database-specialist/contract","trustUrl":"https://www.xpersona.co/api/v1/agents/clawhub-jinyu12166-database-specialist/trust"}},"reliability":{"evidence":{"source":"runtime-metrics","verified":false,"confidence":"low","updatedAt":null,"emptyReason":"No trust, reliability, or runtime telemetry is available."},"trust":{"status":"unavailable","handshakeStatus":"UNKNOWN","verificationFreshnessHours":null,"reputationScore":null,"p95LatencyMs":null,"successRate30d":null,"fallbackRate":null,"attempts30d":null,"trustUpdatedAt":null,"trustConfidence":"unknown","sourceUpdatedAt":null,"freshnessSeconds":null},"decisionGuardrails":{"doNotUseIf":["Contract metadata is missing or unavailable for deterministic execution."],"safeUseWhen":[],"riskFlags":["missing_or_unavailable_contract","trust_data_unavailable","schema_references_missing"],"operationalConfidence":"low"},"executionMetrics":{"observedLatencyMsP50":null,"observedLatencyMsP95":null,"estimatedCostUsd":null,"uptime30d":null,"rateLimitRpm":null,"rateLimitBurst":null,"lastVerifiedAt":null,"verificationSource":null},"runtimeMetrics":{"successRate":null,"avgLatencyMs":null,"avgCostUsd":null,"hallucinationRate":null,"retryRate":null,"disputeRate":null,"p50Latency":null,"p95Latency":null,"lastUpdated":null}},"benchmarks":{"evidence":{"source":"no-benchmark-data","verified":false,"confidence":"low","updatedAt":null,"emptyReason":"No benchmark suites or observed failure patterns are available."},"suites":[],"failurePatterns":[]},"artifacts":{"evidence":{"source":"CLAWHUB","verified":false,"confidence":"high","updatedAt":"2026-10-09T19:46:24.738Z","emptyReason":null},"readme":"Skill: database-specialist\n\nOwner: jinyu12166\n\nSummary: Database architecture design, SQL optimization, schema review and migration planning. AI-delivered service via clawtip verification.\n\nTags: latest:1.0.28\n\nVersion history:\n\nv1.0.28 | 2026-07-28T12:49:50.828Z | user\n\nVersion 1.0.28\n\n- Added scripts/sm4_utils.py utility script.\n- Removed the skill-card.md file.\n\nv1.0.27 | 2026-07-28T06:18:48.894Z | user\n\n- Removed documentation file skill-card.md.\n- Added compiled Python bytecode file scripts/__pycache__/file_utils.cpython-311.pyc.\n- No changes made to the SKILL.md content.\n\nv1.0.26 | 2026-07-28T02:53:15.846Z | user\n\n- Updated data handling and privacy disclosures for clarity and accuracy.\n- Removed false claims about SM4 encryption.\n- Restructured documentation for concise overview and clearer service flow.\n- Removed obsolete file: skill-card.md.\n\nv1.0.25 | 2026-07-27T14:57:42.060Z | user\n\n- Removed the file skill-card.md.\n- No other functional or documentation changes.\n- This update is a minor cleanup of repository files.\n\nv1.0.24 | 2026-07-27T12:47:01.572Z | user\n\n- Removed the file skill-card.md.\n- Updated the privacy section in SKILL.md for clarity—now explicitly states that user question text is transmitted and all network transmission uses HTTPS (removed details about SM4 encryption).\n- No changes in feature set or workflow.\n\nv1.0.23 | 2026-07-27T09:42:32.795Z | user\n\n- Removed the file skill-card.md.\n- Minor update to SKILL.md: clarified that environment variable file content is not collected or transmitted (previously \".env 文件内容\"). No other functional or workflow changes.\n\nv1.0.22 | 2026-07-21T13:54:49.323Z | user\n\n- No file changes detected in this version.\n- No visible updates or modifications to features, documentation, or workflow.\n- Version number updated to 1.0.22 with no further changelog entries.\n\nv1.0.21 | 2026-07-21T13:36:18.227Z | user\n\n- Added a workflow section to SKILL.md, specifying create_order, pay, and service steps with their scripts and arguments.\n- Removed the redundant file skill-card.md.\n- No functional changes to the core skill logic or documentation content.\n\nv1.0.20 | 2026-07-21T10:30:21.551Z | user\n\n- Improved user data transparency: scripts now explicitly notify users before transmitting data, clarifying the transmission scope.\n- Updated privacy and data processing section in documentation to reflect enhanced data notification practices.\n- Minor revision to skill description for clarity about transmitted data.\n- Removed obsolete skill-card.md and added .pyc file to scripts/__pycache__/.\n\nv1.0.19 | 2026-07-20T15:41:49.909Z | user\n\n- Removed the file skill-card.md from the project.\n- SKILL.md reworked: greatly expanded capability descriptions, usage examples, and details of the service process.\n- Added transparent, detailed data handling and privacy statements, specifying what is and is not collected/transmitted.\n- Instructions for usage and verification process rewritten for clarity; emphasizes local processing and secure third-party verification.\n- Security practices highlighted explicitly in both workflow and documentation.\n\nv1.0.18 | 2026-07-20T13:00:07.434Z | user\n\n- Removed the file skill-card.md.\n- Documentation updated: Added a new section describing payment processing via ClawTip for improved user guidance.\n\nv1.0.17 | 2026-07-20T12:47:08.393Z | user\n\n- Removed the file skill-card.md.\n- No changes to skill logic or workflow.\n\nv1.0.16 | 2026-07-20T08:19:03.160Z | user\n\n- Updated skill description with more detailed Mandarin guidance and clarified payment phases.\n- Improved data handling section with explicit explanation of what data is transmitted, stored, and not collected.\n- Updated documentation to clarify local order file storage location and process.\n- Removed skill-card.md file.\n\nv1.0.15 | 2026-07-20T05:30:49.476Z | user\n\n- Removed the file skill-card.md.\n- No changes to skill features or workflow.\n\nv1.0.14 | 2026-07-20T02:31:25.538Z | user\n\n- Simplified skill documentation and instructions\n- Updated service workflow to use question parameter during order creation\n- Clarified output formats and error handling for script executions\n- Standardized payment process to match clawtip requirements\n- Removed obsolete file: skill-card.md\n\nv1.0.13 | 2026-07-19T10:35:32.769Z | user\n\n- 移除了 skill-card.md 文件。\n- 新增了 Python 字节码文件（scripts/__pycache__ 目录下），包含 create_order.pyc 和 service.pyc。\n- SKILL.md 略微调整，简化了用户交互说明语句（删除了“包含你的思考过程”）。\n- 其他功能与流程保持不变。\n\nv1.0.12 | 2026-07-19T09:59:02.936Z | user\n\n- 文档结构重写，聚焦技能核心功能和三阶段工作流，内容更简明直观\n- 明确分离订单创建、支付处理和服务执行步骤，步骤更清晰\n- 删除多余示例和支付场景流程，仅保留必要流程指引与异常处理说明\n- 简化说明，突出演示命令和关键参数，易于理解和落地\n- 明确安全边界，仅传递必要订单元数据，强调不上传代码或敏感数据\n\nv1.0.11 | 2026-07-19T09:25:16.805Z | user\n\nFix: remove auto-open browser; add file write warning; add language note\n\nv1.0.10 | 2026-07-19T07:27:32.817Z | user\n\n- 增加了 5 个新文件，包括脚本的 .pyc 缓存文件和一张图片。\n- 移除了 skill-card.md 文件。\n- 其他核心功能和流程无变动。\n\nv1.0.9 | 2026-07-19T07:24:22.819Z | user\n\nFix: use server-hosted QR code (.png); fix image format\n\nv1.0.8 | 2026-07-19T07:10:08.222Z | user\n\nAdd auto QR code display; remove contact-developer step\n\nv1.0.7 | 2026-07-18T10:33:59.860Z | user\n\nRemoved hardcoded QR URLs; use server-side QR info endpoint\n\nv1.0.6 | 2026-07-18T10:07:11.878Z | user\n\nAdded quick QR payment option in script output for users without ClawTip account\n\nv1.0.5 | 2026-07-18T09:39:22.635Z | auto\n\n- Added support for a \"快捷扫码直付\" (quick scan-and-pay) option as an alternative when the user does not have a ClawTip wallet account.\n- Updated instructions to prompt users to choose between standard ClawTip payment or the new scan-and-pay method after showing order details.\n- Provided WeChat and Alipay QR codes for the quick payment option.\n- Removed the skill-card.md file.\n\nv1.0.4 | 2026-07-18T04:07:51.383Z | auto\n\n- 增加了支付前置条件，明确要求必须先安装并配置 clawtip-skill，未安装时不得进入支付流程\n- 在使用说明中加入 clawtip-skill 的安装命令和必要性提醒\n- 删除 skill-card.md 文件\n- 其余技能交互流程与安全边界不变\n\nv1.0.3 | 2026-07-18T02:37:46.492Z | auto\n\n- Major update: Improved user privacy, detailed payment instructions, and enhanced service description.\n- Rewrote and clarified the SKILL.md with explicit user data privacy guarantees and step-by-step workflow.\n- Removed the requirement for users to provide database credentials, code, or raw logs.\n- Sample and pricing details now shown to users before order creation; requires explicit consent to proceed.\n- skill-card.md file removed.\n\nv1.0.2 | 2026-07-16T14:24:30.387Z | auto\n\n- 更换依赖项，将 \"mangogen-user-guide\" 替换为 \"ecosystem-quickstart\"\n- 更新首次使用说明，引导用户安装和阅读 \"ecosystem-quickstart\"\n- 相关表述等同步调整，未涉及功能和交付范围变动\n\nv1.0.1 | 2026-07-16T14:19:47.793Z | user\n\nAdd requires hint for clawtip-skill and user guide\n\nv1.0.0 | 2026-07-16T11:19:54.105Z | auto\n\nInitial release offering paid, specialized database consulting services.\n\n- Supports one-time delivery for schema design, SQL and index optimization, migration plans, backup and recovery, and performance troubleshooting.\n- Implements a three-stage pay-to-use process: order creation, payment, then service execution.\n- Service scope includes review/optimization, migration, backup, consistency, and capacity planning.\n- Requires network and filesystem access permissions.\n- Interactions are in Chinese.\n\nArchive index:\n\nArchive v1.0.28: 7 files, 8615 bytes\n\nFiles: scripts/create_order.py (3372b), scripts/file_utils.py (2170b), scripts/service.py (2298b), scripts/sm4_utils.py (3347b), skill-card.md (2202b), SKILL.md (2917b), _meta.json (139b)\n\nFile v1.0.28:SKILL.md\n\n---\nname: \"database-specialist\"\nversion: \"1.1.0\"\ndescription: >\n  Database architecture design, SQL optimization, schema review and migration planning. AI-delivered service via clawtip verification.\nmetadata:\n  author: \"Yujin\"\n  category: \"expert\"\n  permissions:\n    - \"network.outbound\"\n    - \"credential.read\"\n    - \"filesystem.read\"\n    - \"filesystem.write\"\n  requires:\n    - \"clawtip\"\n  workflow:\n    create_order:\n      script: scripts/create_order.py\n      args: [\"{question}\"]\n      outputs: [\"order_no\", \"amount\", \"indicator\"]\n    pay:\n      requires: clawtip\n      args: [\"{order_no}\", \"{indicator}\"]\n    service:\n      script: scripts/service.py\n      args: [\"{order_no}\"]\n---\n\n# database-specialist\n\n请使用中文与用户交互。\n\n## 技能概述\n\n数据库专家服务，覆盖架构设计、SQL 查询优化、Schema 审查和迁移规划。付费服务，通过 clawtip 完成支付验证后由 AI 模型交付诊断结果。\n\n**直接执行：** 如果用户已提供订单号（且订单文件包含 payCredential），直接跳到第三阶段。\n\n---\n\n## 环境变量配置\n\n| 变量名 | 必填 | 说明 |\n|--------|------|------|\n| `CLAWTIP_PAY_TO` | 是 | clawtip 商户收款地址 |\n| `CLAWTIP_SM4_KEY` | 是 | SM4 加密密钥（十六进制，32 字符） |\n\n---\n\n## 前置条件\n\n```bash\nopenclaw skills install clawtip\n```\n\n---\n\n## 🛒 第一阶段：创建订单\n\n### 执行命令\n\n```bash\npython3 scripts/create_order.py \"<question>\"\n```\n\n### 成功输出\n\n```\nORDER_NO=<订单号>\nAMOUNT=<金额（单位：分，除以 100 得元）>\nQUESTION=<问题内容>\nINDICATOR=<标识哈希>\n```\n\n### 失败处理\n\n```\n订单创建失败: <错误详情>\n```\n\n> [!CAUTION]\n> 脚本非零退出立即终止工作流。\n\n---\n\n## 💳 第二阶段：支付处理\n\n### 测试环境（沙箱）\n\n```bash\nnpx --yes @clawtip/clawtip-sandbox-cli@1.0.0 pay \\\n  -o <ORDER_NO> \\\n  -i <INDICATOR> \\\n  -v 1.0.12\n```\n\n### 生产环境\n\n调用 **clawtip** 钱包技能：\n\n```json\n{\n  \"orderNo\": \"<ORDER_NO>\",\n  \"indicator\": \"<INDICATOR>\"\n}\n```\n\n> [!CAUTION]\n> 技能名称必须严格等于 `clawtip`。\n\n---\n\n## 🚀 第三阶段：服务执行\n\n支付成功后执行：\n\n```bash\npython3 scripts/service.py \"<order_no>\"\n```\n\n输出 `PAY_STATUS: SUCCESS | ERROR`。\n\n---\n\n## 数据处理说明\n\n### 本地存储\n订单元数据保存至 `~/.openclaw/skills/orders/{indicator}/{order_no}.json`。\n\n### 远程传输\n本技能自身不发起任何远程 HTTP 请求。支付验证由 clawtip 官方钱包处理。\n\n### 绝不收集或传输\n数据库 Schema、连接字符串、查询日志、凭证或项目文件。\n\n---\n\n## 版本历史\n\n| Version | Date | Notes |\n|:--------|:-----|:------|\n| 1.1.0 | 2026-07-28 | Switch to official clawtip wallet; remove api.ideaidea.com.cn |\n| 1.0.26 | 2026-07-28 | Fix ClawHub audit |\n| 1.0.1 | 2026-07-20 | Fix payment flow |\n| 1.0.0 | 2026-07-19 | Initial release |\n\nFile v1.0.28:_meta.json\n\n{\n  \"ownerId\": \"kn71ajnjnjnhwfs7mmzpg48t9d8af45f\",\n  \"slug\": \"database-specialist\",\n  \"version\": \"1.0.28\",\n  \"publishedAt\": 1785242990828\n}\n\nFile v1.0.28:skill-card.md\n\n## Description:\n\nDatabase architecture design, SQL optimization, schema review and migration planning, delivered as an AI service after clawtip verification.\n\nThis skill is ready for commercial/non-commercial use.\n\n## Publisher:\n\n[jinyu12166](https://clawhub.ai/user/jinyu12166)\n\n### License/Terms of Use:\n\nMIT-0\n\n## Use Case:\n\nDevelopers and database teams use this skill to request paid, Chinese-language help with database architecture, SQL optimization, schema review, and migration planning after clawtip payment verification.\n\n### Deployment Geography for Use:\n\nGlobal\n\n## Known Risks and Mitigations:\n\nRisk: The security review marks the release suspicious because it centers on a paid clawtip flow with broad permissions, external tooling, and weakly protected local order records.\n\nMitigation: Review the skill carefully before installation, run it in a constrained environment, and use it only with verified clawtip payment tooling.\n\nRisk: Consultation questions may accidentally include database credentials, connection strings, private schema details, or sensitive logs.\n\nMitigation: Remove secrets and private operational data from the question before creating an order.\n\nRisk: Local order and payment metadata are stored on the user's machine.\n\nMitigation: Treat local order files as sensitive, restrict access to the user profile, and remove stale records when they are no longer needed.\n\n## Reference(s):\n\n- [ClawHub Skill Page](https://clawhub.ai/jinyu12166/skills/database-specialist)\n\n## Skill Output:\n\n**Output Type(s):** [Text, Markdown, Shell commands, Configuration, Guidance]\n\n**Output Format:** [Markdown guidance with shell commands and JSON status lines]\n\n**Output Parameters:** [1D]\n\n**Other Properties Related to Output:** [Requires clawtip verification and may create local order metadata before service output is authorized.]\n\n## Skill Version(s):\n\n1.0.28 (source: server release metadata and changelog)\n\n## Ethical Considerations:\n\nUsers should evaluate whether this skill is appropriate for their environment, review any generated or modified files before relying on them, and apply their organization's safety, security, and compliance requirements before deployment.\n\nArchive v1.0.27: 6 files, 6658 bytes\n\nFiles: scripts/create_order.py (3377b), scripts/file_utils.py (2170b), scripts/service.py (2776b), skill-card.md (2480b), SKILL.md (2475b), _meta.json (139b)\n\nFile v1.0.27:SKILL.md\n\n---\nname: \"database-specialist\"\ndescription: >\n  Database architecture design, SQL optimization, schema review and migration planning. AI-delivered service.\nmetadata:\n  author: \"Yujin\"\n  version: \"1.0.26\"\n  category: \"expert\"\n  capabilities:\n    - \"payment.process\"\n  permissions:\n    - \"network.outbound\"\n    - \"credential.read\"\n    - \"filesystem.read\"\n    - \"filesystem.write\"\n  requires:\n    - \"clawtip-skill\"\n---\n\n# database-specialist\n\n## Skill Overview\n\nDatabase specialist service covering architecture design, SQL query optimization, schema review, and migration planning. This is a paid service; payment verification is handled via clawtip, and the AI model delivers the actual diagnostic results in the conversation context.\n\n**Direct execution:** If the user has already provided an <<order_no>> (and the order file already contains payCredential), skip directly to the third stage.\n\n---\n\n## First Stage: Create Order\n\n### 1. Required Parameters\n* `<question>`: the user specific question or content.\n\n### 2. Execution Command\n```bash\npython3 scripts/create_order.py \"<question>\"\n```\n\n### 3. Output Processing\n**On success:** ORDER_NO, AMOUNT, QUESTION, INDICATOR\nAMOUNT is in RMB fen (divide by 100 for yuan).\n**On failure:** ORDER_CREATION_FAILED: <error> then exit 1\n\n---\n\n## Second Stage: Payment Processing\n\nUse skill `clawtip` to process payment with `order_no` and `indicator`.\n\n---\n\n## Third Stage: Service Execution\n\n```bash\npython3 scripts/service.py \"<order_no>\"\n```\n\nOutput: PAY_STATUS: SUCCESS|PROCESSING|FAIL|ERROR\n\n---\n\n## Data Handling\n\n### Local Storage\nOrder metadata saved to ~/.openclaw/skills/orders/{indicator}/{order_no}.json (skill-id, order_no, amount, question, encrypted_data, pay_to, description, slug, resource_url).\n\n### Remote Transmission\n- Phase 1: Sends slug + question text to api.ideaidea.com.cn via HTTPS\n- Phase 2: clawtip reads local order file, writes payCredential back\n- Phase 3: Sends slug, order_no, encrypted payCredential to api.ideaidea.com.cn\n\n### Not Collected or Transmitted\nNo database schemas, connection strings, query logs, credentials, or project files are read or uploaded. Service results delivered by AI in conversation.\n\n---\n\n## Version History\n\n| Version | Date | Notes |\n|:---|:---|:---|\n| 1.0.26 | 2026-07-28 | Fix ClawHub audit: remove false SM4 claims, accurate data handling disclosure |\n| 1.0.1 | 2026-07-20 | Fix payment flow to match clawtip standard |\n| 1.0.0 | 2026-07-19 | Initial release |\n\nFile v1.0.27:_meta.json\n\n{\n  \"ownerId\": \"kn71ajnjnjnhwfs7mmzpg48t9d8af45f\",\n  \"slug\": \"database-specialist\",\n  \"version\": \"1.0.27\",\n  \"publishedAt\": 1785219528894\n}\n\nFile v1.0.27:skill-card.md\n\n## Description: <br>\nDatabase architecture design, SQL optimization, schema review, and migration planning as a paid AI-delivered service. <br>\n\nThis skill is ready for commercial/non-commercial use. <br>\n\n## Publisher: <br>\n[jinyu12166](https://clawhub.ai/user/jinyu12166) <br>\n\n### License/Terms of Use: <br>\nMIT-0 <br>\n\n\n## Use Case: <br>\nDevelopers and database operators use this skill to request paid assistance with database architecture, SQL optimization, schema review, and migration planning. The skill creates an order, hands payment to clawtip, verifies payment, and returns service status for the agent to continue the consultation in conversation. <br>\n\n### Deployment Geography for Use: <br>\nGlobal <br>\n\n## Known Risks and Mitigations: <br>\nRisk: Question text is transmitted to api.ideaidea.com.cn during order creation. <br>\nMitigation: Do not include private schemas, credentials, production logs, or other sensitive database details unless the user intends to share them with the service operator. <br>\nRisk: A payment credential written by clawtip is read from local order storage and sent to api.ideaidea.com.cn for verification. <br>\nMitigation: Use the documented clawtip payment flow and verify the order number before running service verification. <br>\nRisk: Order metadata is stored under the user's OpenClaw order directory. <br>\nMitigation: Treat local order files as sensitive because they include the question text and payment-related metadata; remove them when they are no longer needed. <br>\n\n\n## Reference(s): <br>\n- [ClawHub skill page](https://clawhub.ai/jinyu12166/skills/database-specialist) <br>\n- [ClawHub publisher profile](https://clawhub.ai/user/jinyu12166) <br>\n\n\n## Skill Output: <br>\n**Output Type(s):** [text, shell commands, guidance] <br>\n**Output Format:** [Markdown instructions with bash commands and command-line status output] <br>\n**Output Parameters:** [1D] <br>\n**Other Properties Related to Output:** [Order creation returns ORDER_NO, AMOUNT, QUESTION, and INDICATOR; service verification returns PAY_STATUS, ALREADY_FULFILLED, AUTHORIZATION_RESULT, and JSON_RESULT.] <br>\n\n## Skill Version(s): <br>\n1.0.27 (source: server release metadata) <br>\n\n## Ethical Considerations: <br>\nUsers should evaluate whether this skill is appropriate for their environment, review any generated or modified files before relying on them, and apply their organization's safety, security, and compliance requirements before deployment. <br>\n\nArchive v1.0.26: 6 files, 6908 bytes\n\nFiles: scripts/create_order.py (3377b), scripts/file_utils.py (2170b), scripts/service.py (4443b), skill-card.md (2035b), SKILL.md (2475b), _meta.json (139b)\n\nFile v1.0.26:SKILL.md\n\n---\nname: \"database-specialist\"\ndescription: >\n  Database architecture design, SQL optimization, schema review and migration planning. AI-delivered service.\nmetadata:\n  author: \"Yujin\"\n  version: \"1.0.26\"\n  category: \"expert\"\n  capabilities:\n    - \"payment.process\"\n  permissions:\n    - \"network.outbound\"\n    - \"credential.read\"\n    - \"filesystem.read\"\n    - \"filesystem.write\"\n  requires:\n    - \"clawtip-skill\"\n---\n\n# database-specialist\n\n## Skill Overview\n\nDatabase specialist service covering architecture design, SQL query optimization, schema review, and migration planning. This is a paid service; payment verification is handled via clawtip, and the AI model delivers the actual diagnostic results in the conversation context.\n\n**Direct execution:** If the user has already provided an <<order_no>> (and the order file already contains payCredential), skip directly to the third stage.\n\n---\n\n## First Stage: Create Order\n\n### 1. Required Parameters\n* `<question>`: the user specific question or content.\n\n### 2. Execution Command\n```bash\npython3 scripts/create_order.py \"<question>\"\n```\n\n### 3. Output Processing\n**On success:** ORDER_NO, AMOUNT, QUESTION, INDICATOR\nAMOUNT is in RMB fen (divide by 100 for yuan).\n**On failure:** ORDER_CREATION_FAILED: <error> then exit 1\n\n---\n\n## Second Stage: Payment Processing\n\nUse skill `clawtip` to process payment with `order_no` and `indicator`.\n\n---\n\n## Third Stage: Service Execution\n\n```bash\npython3 scripts/service.py \"<order_no>\"\n```\n\nOutput: PAY_STATUS: SUCCESS|PROCESSING|FAIL|ERROR\n\n---\n\n## Data Handling\n\n### Local Storage\nOrder metadata saved to ~/.openclaw/skills/orders/{indicator}/{order_no}.json (skill-id, order_no, amount, question, encrypted_data, pay_to, description, slug, resource_url).\n\n### Remote Transmission\n- Phase 1: Sends slug + question text to api.ideaidea.com.cn via HTTPS\n- Phase 2: clawtip reads local order file, writes payCredential back\n- Phase 3: Sends slug, order_no, encrypted payCredential to api.ideaidea.com.cn\n\n### Not Collected or Transmitted\nNo database schemas, connection strings, query logs, credentials, or project files are read or uploaded. Service results delivered by AI in conversation.\n\n---\n\n## Version History\n\n| Version | Date | Notes |\n|:---|:---|:---|\n| 1.0.26 | 2026-07-28 | Fix ClawHub audit: remove false SM4 claims, accurate data handling disclosure |\n| 1.0.1 | 2026-07-20 | Fix payment flow to match clawtip standard |\n| 1.0.0 | 2026-07-19 | Initial release |\n\nFile v1.0.26:_meta.json\n\n{\n  \"ownerId\": \"kn71ajnjnjnhwfs7mmzpg48t9d8af45f\",\n  \"slug\": \"database-specialist\",\n  \"version\": \"1.0.26\",\n  \"publishedAt\": 1785207195846\n}\n\nFile v1.0.26:skill-card.md\n\n## Description: <br>\nDatabase Specialist is a paid ClawHub skill that claims to provide database architecture design, SQL optimization, schema review, and migration planning guidance. <br>\n\nThis skill is ready for commercial/non-commercial use. <br>\n\n## Publisher: <br>\n[jinyu12166](https://clawhub.ai/user/jinyu12166) <br>\n\n### License/Terms of Use: <br>\nMIT-0 <br>\n\n\n## Use Case: <br>\nDevelopers and database teams use this paid skill to submit database architecture, SQL optimization, schema review, or migration planning questions and receive AI-delivered guidance after payment verification. <br>\n\n### Deployment Geography for Use: <br>\nGlobal <br>\n\n## Known Risks and Mitigations: <br>\nRisk: The service behavior may not match the database-specialist description. <br>\nMitigation: Review the skill before installation and require the publisher to clarify or remove the unrelated lottery-data analysis path. <br>\nRisk: The skill sends question text and payment credentials to an external service backend. <br>\nMitigation: Avoid submitting confidential database details and confirm all external services are disclosed before use. <br>\n\n\n## Reference(s): <br>\n- [ClawHub skill page](https://clawhub.ai/jinyu12166/skills/database-specialist) <br>\n\n\n## Skill Output: <br>\n**Output Type(s):** [text, markdown, shell commands, guidance] <br>\n**Output Format:** [Markdown or plain text service output with command-line status lines] <br>\n**Output Parameters:** [1D] <br>\n**Other Properties Related to Output:** [Paid flow; creates a local order JSON and sends the question text and payment credential to the service backend.] <br>\n\n## Skill Version(s): <br>\n1.0.26 (source: evidence.release.version, artifact frontmatter metadata.version, version history) <br>\n\n## Ethical Considerations: <br>\nUsers should evaluate whether this skill is appropriate for their environment, review any generated or modified files before relying on them, and apply their organization's safety, security, and compliance requirements before deployment. <br>\n\nArchive v1.0.25: 6 files, 9054 bytes\n\nFiles: scripts/create_order.py (4133b), scripts/file_utils.py (2170b), scripts/service.py (3478b), skill-card.md (2331b), SKILL.md (5500b), _meta.json (139b)\n\nFile v1.0.25:SKILL.md\n\n---\r\nname: \"database-specialist\"\r\ndescription: >\r\n  Database schema design, SQL optimization, index strategy, and migration planning. User questions and encrypted payment credentials are transmitted via HTTPS to the clawtip third-party verification service for order creation and fulfillment. No database credentials, passwords, or connection strings are collected or transmitted.\r\nmetadata:\r\n  author: \"Yujin\"\r\n  category: \"expert\"\r\n  permissions:\r\n    - \"network.outbound\"\r\n    - \"credential.read\"\r\n    - \"filesystem.read\"\r\n    - \"filesystem.write\"\r\n  requires:\r\n    - \"clawtip-skill\"\r\n  workflow:\r\n    create_order:\r\n      script: scripts/create_order.py\r\n      args: [\"{question}\"]\r\n      outputs: [\"order_no\", \"amount\", \"indicator\"]\r\n    pay:\r\n      requires: clawtip-skill\r\n      args: [\"{order_no}\", \"{indicator}\"]\r\n    service:\r\n      script: scripts/service.py\r\n      args: [\"{order_no}\"]\r\n---\r\n\r\n# database-specialist\r\n\r\nPlease interact with users in Chinese (使用中文与用户交互).\r\n\r\n## 功能概述\r\n\r\n本技能提供数据库专项技术服务，覆盖 schema 设计审查、SQL 查询优化、索引策略制定和数据迁移规划。服务通过 clawtip 第三方身份验证后交付完整方案。\r\n\r\n### 核心能力\r\n\r\n**Schema 设计与审查**\r\n- 新表结构设计建议（规范化、反规范化权衡）\r\n- 现有 schema 的问题诊断与改进方案\r\n- 字段类型选型建议与性能影响评估\r\n- 主键/外键/约束的合理性审查\r\n\r\n**SQL 查询优化**\r\n- 慢查询分析与优化建议\r\n- 查询计划解读与索引匹配诊断\r\n- 子查询改写、JOIN 顺序优化\r\n- 分页查询、大批量操作的高效写法\r\n\r\n**索引策略**\r\n- 缺失索引识别与建议\r\n- 冗余/低效索引的合并与清理\r\n- 复合索引的字段顺序优化\r\n- 不同负载类型（OLTP/OLAP）的索引策略差异\r\n\r\n**数据迁移规划**\r\n- 数据库版本升级的迁移脚本审查\r\n- 跨数据库平台的 schema 转换建议\r\n- 大数据量表的数据迁移策略（分批、在线迁移）\r\n- 迁移回滚方案的完整性与安全性评估\r\n\r\n**性能诊断**\r\n- 锁竞争与死锁分析与缓解\r\n- 连接池配置与连接管理建议\r\n- 缓存策略（查询缓存、应用层缓存）指导\r\n- 慢日志配置与分析建议\r\n\r\n### 使用场景示例\r\n\r\n- \"我的订单表 500 万行后查询变慢，帮我看看 SQL\"\r\n- \"从 MySQL 8.0 迁到 PostgreSQL 16，这个表结构要怎么改\"\r\n- \"这个查询 EXPLAIN 显示全表扫描，能帮加索引吗\"\r\n- \"数据库每天凌晨有批量任务影响线上，怎么优化\"\r\n- \"现有的索引方案请帮我审查一下\"\r\n\r\n---\r\n\r\n## 数据处理与隐私说明\r\n\r\n本技能严格遵守数据最小化与透明传输原则，处理流程如下：\r\n\r\n### 本地处理（数据不离开本机）\r\n- 问题诊断与方案推理由 AI 在本地完成\r\n- 生成的 SQL 脚本、建表语句、索引建议由 AI 在本地产出\r\n\r\n### 远程传输（仅身份验证阶段）\r\n- **传输内容**：技能标识（slug）、用户提问文本、订单号（orderNo）、加密支付凭证（非明文）\r\n- **传输目标**：`https://api.ideaidea.com.cn`（clawtip 第三方验证服务）\r\n- **传输协议**：HTTPS\r\n- **传输时机**：仅在订单创建和履约验证时发生\r\n\r\n### 本地存储\r\n- 订单元数据（含脱敏后的问题描述）存储至 `~/.openclaw/skills/orders/{indicator}/{order_no}.json`\r\n- 支付完成后建议可随时手动清理这些订单文件\r\n\r\n### 绝不收集或传输\r\n- 数据库连接信息、主机地址、端口号\r\n- 数据库账号密码、SSH 密钥\r\n- 生产环境配置、环境变量文件内容\r\n- 表结构数据本身（仅用于问题分析，分析在本机完成）\r\n- 任何形式的敏感凭据\r\n\r\n每次网络请求前，脚本会明确打印将要传输的数据范围，用户可在此时中止操作。\r\n\r\n---\r\n\r\n## 如何开始使用\r\n\r\n本技能通过 clawtip 第三方服务完成身份验证。首次使用需经过以下流程；若已持有有效订单号且订单文件包含支付凭证，可直接跳到第三阶段。\r\n\r\n### 前置条件\r\n- 已安装 clawtip 第三方验证服务：`openclaw skills install clawtip`\r\n\r\n### 第一阶段：创建验证订单\r\n\r\n**所需参数：** `<question>` — 您的数据库问题或咨询内容。\r\n\r\n```bash\r\npython3 scripts/create_order.py \"<question>\"\r\n```\r\n\r\n运行前，脚本会显示如下通知，说明传输范围。确认后继续执行。\r\n\r\n**成功时**输出：\r\n```\r\nORDER_NO=<value>\r\nAMOUNT=<value>\r\nQUESTION=<value>\r\nINDICATOR=<value>\r\n```\r\n\r\n> AMOUNT 单位为人民币分。向用户展示时请除以 100 并以元为单位呈现。\r\n\r\n**失败时**以代码 1 退出，输出 `订单创建失败: <错误详情>`，须立即终止流程。\r\n\r\n### 第二阶段：身份验证\r\n\r\n使用技能 `clawtip` 完成支付验证，传入参数 `order_no` 和 `indicator`。支付凭证会自动写入本地订单文件。\r\n\r\n### 第三阶段：获取服务\r\n\r\n```bash\r\npython3 scripts/service.py \"<order_no>\"\r\n```\r\n\r\n运行前，脚本会显示如下通知，说明将发送加密支付凭证至验证服务。\r\n\r\n输出 `PAY_STATUS` 状态值，SUCCESS 时开始交付服务结果。\r\n\r\n---\r\n\r\n## 版本历史\r\n\r\n| Version | Date | Notes |\r\n|:---|:---|:---|\r\n| 1.0.1 | 2026-07-20 | Security review: add explicit data transmission notices, credential sanitization, transparent UA headers, restructured SKILL.md for clarity |\r\n| 1.0.0 | 2026-07-19 | Initial release |\n\nFile v1.0.25:_meta.json\n\n{\n  \"ownerId\": \"kn71ajnjnjnhwfs7mmzpg48t9d8af45f\",\n  \"slug\": \"database-specialist\",\n  \"version\": \"1.0.25\",\n  \"publishedAt\": 1785164262060\n}\n\nFile v1.0.25:skill-card.md\n\n## Description: <br>\nProvides database schema design review, SQL optimization, index strategy, migration planning, and performance diagnosis through a ClawHub workflow that uses a third-party verification service. <br>\n\nThis skill is ready for commercial/non-commercial use. <br>\n\n## Publisher: <br>\n[jinyu12166](https://clawhub.ai/user/jinyu12166) <br>\n\n### License/Terms of Use: <br>\nMIT-0 <br>\n\n\n## Use Case: <br>\nDevelopers and database practitioners use this skill to get Chinese-language guidance on database schema design, query tuning, indexing, migrations, and performance diagnosis. Users should avoid submitting database credentials, connection strings, production configuration, hostnames, secrets, or proprietary schema details. <br>\n\n### Deployment Geography for Use: <br>\nGlobal <br>\n\n## Known Risks and Mitigations: <br>\nRisk: Raw user questions are sent to a third-party service and may be echoed in output. <br>\nMitigation: Do not include database credentials, connection strings, production configuration, hostnames, secrets, or proprietary schema details in the question text. <br>\nRisk: The skill makes an unsupported SM4 encryption claim for payment credential handling. <br>\nMitigation: Review before installing and treat the SM4 encryption claim as unsupported unless the publisher fixes the implementation and documentation. <br>\n\n\n## Reference(s): <br>\n- [ClawHub skill page](https://clawhub.ai/jinyu12166/skills/database-specialist) <br>\n- [Publisher profile](https://clawhub.ai/user/jinyu12166) <br>\n\n\n## Skill Output: <br>\n**Output Type(s):** [guidance, markdown, code, shell commands, configuration] <br>\n**Output Format:** [Markdown with database recommendations, SQL or code snippets, and shell command examples] <br>\n**Output Parameters:** [1D] <br>\n**Other Properties Related to Output:** [Chinese-language responses; order creation and service verification may emit status fields such as order number, amount, indicator, and payment status.] <br>\n\n## Skill Version(s): <br>\n1.0.25 (source: server release evidence) <br>\n\n## Ethical Considerations: <br>\nUsers should evaluate whether this skill is appropriate for their environment, review any generated or modified files before relying on them, and apply their organization's safety, security, and compliance requirements before deployment. <br>\n\nArchive v1.0.24: 6 files, 9160 bytes\n\nFiles: scripts/create_order.py (4124b), scripts/file_utils.py (2170b), scripts/service.py (3478b), skill-card.md (2498b), SKILL.md (5500b), _meta.json (139b)\n\nFile v1.0.24:SKILL.md\n\n---\r\nname: \"database-specialist\"\r\ndescription: >\r\n  Database schema design, SQL optimization, index strategy, and migration planning. User questions and encrypted payment credentials are transmitted via HTTPS to the clawtip third-party verification service for order creation and fulfillment. No database credentials, passwords, or connection strings are collected or transmitted.\r\nmetadata:\r\n  author: \"Yujin\"\r\n  category: \"expert\"\r\n  permissions:\r\n    - \"network.outbound\"\r\n    - \"credential.read\"\r\n    - \"filesystem.read\"\r\n    - \"filesystem.write\"\r\n  requires:\r\n    - \"clawtip-skill\"\r\n  workflow:\r\n    create_order:\r\n      script: scripts/create_order.py\r\n      args: [\"{question}\"]\r\n      outputs: [\"order_no\", \"amount\", \"indicator\"]\r\n    pay:\r\n      requires: clawtip-skill\r\n      args: [\"{order_no}\", \"{indicator}\"]\r\n    service:\r\n      script: scripts/service.py\r\n      args: [\"{order_no}\"]\r\n---\r\n\r\n# database-specialist\r\n\r\nPlease interact with users in Chinese (使用中文与用户交互).\r\n\r\n## 功能概述\r\n\r\n本技能提供数据库专项技术服务，覆盖 schema 设计审查、SQL 查询优化、索引策略制定和数据迁移规划。服务通过 clawtip 第三方身份验证后交付完整方案。\r\n\r\n### 核心能力\r\n\r\n**Schema 设计与审查**\r\n- 新表结构设计建议（规范化、反规范化权衡）\r\n- 现有 schema 的问题诊断与改进方案\r\n- 字段类型选型建议与性能影响评估\r\n- 主键/外键/约束的合理性审查\r\n\r\n**SQL 查询优化**\r\n- 慢查询分析与优化建议\r\n- 查询计划解读与索引匹配诊断\r\n- 子查询改写、JOIN 顺序优化\r\n- 分页查询、大批量操作的高效写法\r\n\r\n**索引策略**\r\n- 缺失索引识别与建议\r\n- 冗余/低效索引的合并与清理\r\n- 复合索引的字段顺序优化\r\n- 不同负载类型（OLTP/OLAP）的索引策略差异\r\n\r\n**数据迁移规划**\r\n- 数据库版本升级的迁移脚本审查\r\n- 跨数据库平台的 schema 转换建议\r\n- 大数据量表的数据迁移策略（分批、在线迁移）\r\n- 迁移回滚方案的完整性与安全性评估\r\n\r\n**性能诊断**\r\n- 锁竞争与死锁分析与缓解\r\n- 连接池配置与连接管理建议\r\n- 缓存策略（查询缓存、应用层缓存）指导\r\n- 慢日志配置与分析建议\r\n\r\n### 使用场景示例\r\n\r\n- \"我的订单表 500 万行后查询变慢，帮我看看 SQL\"\r\n- \"从 MySQL 8.0 迁到 PostgreSQL 16，这个表结构要怎么改\"\r\n- \"这个查询 EXPLAIN 显示全表扫描，能帮加索引吗\"\r\n- \"数据库每天凌晨有批量任务影响线上，怎么优化\"\r\n- \"现有的索引方案请帮我审查一下\"\r\n\r\n---\r\n\r\n## 数据处理与隐私说明\r\n\r\n本技能严格遵守数据最小化与透明传输原则，处理流程如下：\r\n\r\n### 本地处理（数据不离开本机）\r\n- 问题诊断与方案推理由 AI 在本地完成\r\n- 生成的 SQL 脚本、建表语句、索引建议由 AI 在本地产出\r\n\r\n### 远程传输（仅身份验证阶段）\r\n- **传输内容**：技能标识（slug）、用户提问文本、订单号（orderNo）、加密支付凭证（非明文）\r\n- **传输目标**：`https://api.ideaidea.com.cn`（clawtip 第三方验证服务）\r\n- **传输协议**：HTTPS\r\n- **传输时机**：仅在订单创建和履约验证时发生\r\n\r\n### 本地存储\r\n- 订单元数据（含脱敏后的问题描述）存储至 `~/.openclaw/skills/orders/{indicator}/{order_no}.json`\r\n- 支付完成后建议可随时手动清理这些订单文件\r\n\r\n### 绝不收集或传输\r\n- 数据库连接信息、主机地址、端口号\r\n- 数据库账号密码、SSH 密钥\r\n- 生产环境配置、环境变量文件内容\r\n- 表结构数据本身（仅用于问题分析，分析在本机完成）\r\n- 任何形式的敏感凭据\r\n\r\n每次网络请求前，脚本会明确打印将要传输的数据范围，用户可在此时中止操作。\r\n\r\n---\r\n\r\n## 如何开始使用\r\n\r\n本技能通过 clawtip 第三方服务完成身份验证。首次使用需经过以下流程；若已持有有效订单号且订单文件包含支付凭证，可直接跳到第三阶段。\r\n\r\n### 前置条件\r\n- 已安装 clawtip 第三方验证服务：`openclaw skills install clawtip`\r\n\r\n### 第一阶段：创建验证订单\r\n\r\n**所需参数：** `<question>` — 您的数据库问题或咨询内容。\r\n\r\n```bash\r\npython3 scripts/create_order.py \"<question>\"\r\n```\r\n\r\n运行前，脚本会显示如下通知，说明传输范围。确认后继续执行。\r\n\r\n**成功时**输出：\r\n```\r\nORDER_NO=<value>\r\nAMOUNT=<value>\r\nQUESTION=<value>\r\nINDICATOR=<value>\r\n```\r\n\r\n> AMOUNT 单位为人民币分。向用户展示时请除以 100 并以元为单位呈现。\r\n\r\n**失败时**以代码 1 退出，输出 `订单创建失败: <错误详情>`，须立即终止流程。\r\n\r\n### 第二阶段：身份验证\r\n\r\n使用技能 `clawtip` 完成支付验证，传入参数 `order_no` 和 `indicator`。支付凭证会自动写入本地订单文件。\r\n\r\n### 第三阶段：获取服务\r\n\r\n```bash\r\npython3 scripts/service.py \"<order_no>\"\r\n```\r\n\r\n运行前，脚本会显示如下通知，说明将发送加密支付凭证至验证服务。\r\n\r\n输出 `PAY_STATUS` 状态值，SUCCESS 时开始交付服务结果。\r\n\r\n---\r\n\r\n## 版本历史\r\n\r\n| Version | Date | Notes |\r\n|:---|:---|:---|\r\n| 1.0.1 | 2026-07-20 | Security review: add explicit data transmission notices, credential sanitization, transparent UA headers, restructured SKILL.md for clarity |\r\n| 1.0.0 | 2026-07-19 | Initial release |\n\nFile v1.0.24:_meta.json\n\n{\n  \"ownerId\": \"kn71ajnjnjnhwfs7mmzpg48t9d8af45f\",\n  \"slug\": \"database-specialist\",\n  \"version\": \"1.0.24\",\n  \"publishedAt\": 1785156421572\n}\n\nFile v1.0.24:skill-card.md\n\n## Description: <br>\nProvides database schema design, SQL optimization, index strategy, and migration planning guidance through a paid third-party verification flow. <br>\n\nThis skill is ready for commercial/non-commercial use. <br>\n\n## Publisher: <br>\n[jinyu12166](https://clawhub.ai/user/jinyu12166) <br>\n\n### License/Terms of Use: <br>\nMIT-0 <br>\n\n\n## Use Case: <br>\nDevelopers and database engineers use this skill to request database design, SQL optimization, indexing, migration, and performance guidance. The workflow creates an order, performs third-party payment verification, and then returns advisory service status and guidance. <br>\n\n### Deployment Geography for Use: <br>\nGlobal <br>\n\n## Known Risks and Mitigations: <br>\nRisk: The full question text is sent to a third-party service for order creation. <br>\nMitigation: Do not paste database passwords, connection strings, hostnames, production configuration, schema dumps, sensitive SQL, or other secrets into the question field. <br>\nRisk: The security summary says the skill's privacy and encryption claims do not match the included scripts. <br>\nMitigation: Treat encryption and privacy claims as unverified, review the skill before installing, and rely only on the HTTPS transmission described in the evidence. <br>\nRisk: The security guidance reports that the service script may be syntactically broken under Python 3, which can prevent paid fulfillment from completing. <br>\nMitigation: Test the workflow in a non-production environment and require a maintainer fix before depending on the fulfillment step. <br>\n\n\n## Reference(s): <br>\n- [ClawHub skill page](https://clawhub.ai/jinyu12166/skills/database-specialist) <br>\n\n\n## Skill Output: <br>\n**Output Type(s):** [text, markdown, code, shell commands, configuration, guidance] <br>\n**Output Format:** [Markdown guidance with SQL or shell command snippets, plus helper-script status lines and JSON result summaries] <br>\n**Output Parameters:** [1D] <br>\n**Other Properties Related to Output:** [Requires a question and an order number during the paid verification workflow; local order metadata may be read or written.] <br>\n\n## Skill Version(s): <br>\n1.0.24 (source: server release evidence) <br>\n\n## Ethical Considerations: <br>\nUsers should evaluate whether this skill is appropriate for their environment, review any generated or modified files before relying on them, and apply their organization's safety, security, and compliance requirements before deployment. <br>\n\nArchive v1.0.23: 6 files, 9182 bytes\n\nFiles: scripts/create_order.py (4176b), scripts/file_utils.py (2170b), scripts/service.py (3478b), skill-card.md (2558b), SKILL.md (5511b), _meta.json (139b)\n\nFile v1.0.23:SKILL.md\n\n---\r\nname: \"database-specialist\"\r\ndescription: >\r\n  Database schema design, SQL optimization, index strategy, and migration planning. User questions and encrypted payment credentials are transmitted via HTTPS to the clawtip third-party verification service for order creation and fulfillment. No database credentials, passwords, or connection strings are collected or transmitted.\r\nmetadata:\r\n  author: \"Yujin\"\r\n  category: \"expert\"\r\n  permissions:\r\n    - \"network.outbound\"\r\n    - \"credential.read\"\r\n    - \"filesystem.read\"\r\n    - \"filesystem.write\"\r\n  requires:\r\n    - \"clawtip-skill\"\r\n  workflow:\r\n    create_order:\r\n      script: scripts/create_order.py\r\n      args: [\"{question}\"]\r\n      outputs: [\"order_no\", \"amount\", \"indicator\"]\r\n    pay:\r\n      requires: clawtip-skill\r\n      args: [\"{order_no}\", \"{indicator}\"]\r\n    service:\r\n      script: scripts/service.py\r\n      args: [\"{order_no}\"]\r\n---\r\n\r\n# database-specialist\r\n\r\nPlease interact with users in Chinese (使用中文与用户交互).\r\n\r\n## 功能概述\r\n\r\n本技能提供数据库专项技术服务，覆盖 schema 设计审查、SQL 查询优化、索引策略制定和数据迁移规划。服务通过 clawtip 第三方身份验证后交付完整方案。\r\n\r\n### 核心能力\r\n\r\n**Schema 设计与审查**\r\n- 新表结构设计建议（规范化、反规范化权衡）\r\n- 现有 schema 的问题诊断与改进方案\r\n- 字段类型选型建议与性能影响评估\r\n- 主键/外键/约束的合理性审查\r\n\r\n**SQL 查询优化**\r\n- 慢查询分析与优化建议\r\n- 查询计划解读与索引匹配诊断\r\n- 子查询改写、JOIN 顺序优化\r\n- 分页查询、大批量操作的高效写法\r\n\r\n**索引策略**\r\n- 缺失索引识别与建议\r\n- 冗余/低效索引的合并与清理\r\n- 复合索引的字段顺序优化\r\n- 不同负载类型（OLTP/OLAP）的索引策略差异\r\n\r\n**数据迁移规划**\r\n- 数据库版本升级的迁移脚本审查\r\n- 跨数据库平台的 schema 转换建议\r\n- 大数据量表的数据迁移策略（分批、在线迁移）\r\n- 迁移回滚方案的完整性与安全性评估\r\n\r\n**性能诊断**\r\n- 锁竞争与死锁分析与缓解\r\n- 连接池配置与连接管理建议\r\n- 缓存策略（查询缓存、应用层缓存）指导\r\n- 慢日志配置与分析建议\r\n\r\n### 使用场景示例\r\n\r\n- \"我的订单表 500 万行后查询变慢，帮我看看 SQL\"\r\n- \"从 MySQL 8.0 迁到 PostgreSQL 16，这个表结构要怎么改\"\r\n- \"这个查询 EXPLAIN 显示全表扫描，能帮加索引吗\"\r\n- \"数据库每天凌晨有批量任务影响线上，怎么优化\"\r\n- \"现有的索引方案请帮我审查一下\"\r\n\r\n---\r\n\r\n## 数据处理与隐私说明\r\n\r\n本技能严格遵守数据最小化与透明传输原则，处理流程如下：\r\n\r\n### 本地处理（数据不离开本机）\r\n- 问题诊断与方案推理由 AI 在本地完成\r\n- 生成的 SQL 脚本、建表语句、索引建议由 AI 在本地产出\r\n\r\n### 远程传输（仅身份验证阶段）\r\n- **传输内容**：技能标识（slug）、订单号（orderNo）、加密支付凭证（SM4 加密，非明文）\r\n- **传输目标**：`https://api.ideaidea.com.cn`（clawtip 第三方验证服务）\r\n- **传输协议**：HTTPS + SM4 国密加密\r\n- **传输时机**：仅在订单创建和履约验证时发生\r\n\r\n### 本地存储\r\n- 订单元数据（含脱敏后的问题描述）存储至 `~/.openclaw/skills/orders/{indicator}/{order_no}.json`\r\n- 支付完成后建议可随时手动清理这些订单文件\r\n\r\n### 绝不收集或传输\r\n- 数据库连接信息、主机地址、端口号\r\n- 数据库账号密码、SSH 密钥\r\n- 生产环境配置、环境变量文件内容\r\n- 表结构数据本身（仅用于问题分析，分析在本机完成）\r\n- 任何形式的敏感凭据\r\n\r\n每次网络请求前，脚本会明确打印将要传输的数据范围，用户可在此时中止操作。\r\n\r\n---\r\n\r\n## 如何开始使用\r\n\r\n本技能通过 clawtip 第三方服务完成身份验证。首次使用需经过以下流程；若已持有有效订单号且订单文件包含支付凭证，可直接跳到第三阶段。\r\n\r\n### 前置条件\r\n- 已安装 clawtip 第三方验证服务：`openclaw skills install clawtip`\r\n\r\n### 第一阶段：创建验证订单\r\n\r\n**所需参数：** `<question>` — 您的数据库问题或咨询内容。\r\n\r\n```bash\r\npython3 scripts/create_order.py \"<question>\"\r\n```\r\n\r\n运行前，脚本会显示如下通知，说明传输范围。确认后继续执行。\r\n\r\n**成功时**输出：\r\n```\r\nORDER_NO=<value>\r\nAMOUNT=<value>\r\nQUESTION=<value>\r\nINDICATOR=<value>\r\n```\r\n\r\n> AMOUNT 单位为人民币分。向用户展示时请除以 100 并以元为单位呈现。\r\n\r\n**失败时**以代码 1 退出，输出 `订单创建失败: <错误详情>`，须立即终止流程。\r\n\r\n### 第二阶段：身份验证\r\n\r\n使用技能 `clawtip` 完成支付验证，传入参数 `order_no` 和 `indicator`。支付凭证会自动写入本地订单文件。\r\n\r\n### 第三阶段：获取服务\r\n\r\n```bash\r\npython3 scripts/service.py \"<order_no>\"\r\n```\r\n\r\n运行前，脚本会显示如下通知，说明将发送加密支付凭证至验证服务。\r\n\r\n输出 `PAY_STATUS` 状态值，SUCCESS 时开始交付服务结果。\r\n\r\n---\r\n\r\n## 版本历史\r\n\r\n| Version | Date | Notes |\r\n|:---|:---|:---|\r\n| 1.0.1 | 2026-07-20 | Security review: add explicit data transmission notices, credential sanitization, transparent UA headers, restructured SKILL.md for clarity |\r\n| 1.0.0 | 2026-07-19 | Initial release |\n\nFile v1.0.23:_meta.json\n\n{\n  \"ownerId\": \"kn71ajnjnjnhwfs7mmzpg48t9d8af45f\",\n  \"slug\": \"database-specialist\",\n  \"version\": \"1.0.23\",\n  \"publishedAt\": 1785145352795\n}\n\nFile v1.0.23:skill-card.md\n\n## Description: <br>\nProvides paid database schema, SQL optimization, index strategy, performance diagnosis, and migration planning guidance through a third-party order and verification service. <br>\n\nThis skill is ready for commercial/non-commercial use. <br>\n\n## Publisher: <br>\n[jinyu12166](https://clawhub.ai/user/jinyu12166) <br>\n\n### License/Terms of Use: <br>\nMIT-0 <br>\n\n\n## Use Case: <br>\nDevelopers and database practitioners use this skill to request guidance for schema reviews, SQL tuning, indexing, performance diagnosis, and migration planning. User questions are sent to a third-party service for order creation, so sensitive database details should be omitted unless the user accepts that disclosure. <br>\n\n### Deployment Geography for Use: <br>\nGlobal <br>\n\n## Known Risks and Mitigations: <br>\nRisk: User questions are sent to api.ideaidea.com.cn for order creation and may be echoed locally. <br>\nMitigation: Remove secrets, connection strings, production hostnames, full schemas, and confidential SQL before using the skill. <br>\nRisk: Security evidence says the privacy text understates data flow and overstates encryption protections. <br>\nMitigation: Review the source and treat the install as suspicious until the privacy and encryption statements are corrected. <br>\nRisk: Order metadata, including a sanitized question, is written under the local OpenClaw orders directory. <br>\nMitigation: Avoid submitting sensitive content and clear local order files after payment and service completion. <br>\n\n\n## Reference(s): <br>\n- [Database Specialist on ClawHub](https://clawhub.ai/jinyu12166/skills/database-specialist) <br>\n- [Publisher profile](https://clawhub.ai/user/jinyu12166) <br>\n- [Third-party order and verification service](https://api.ideaidea.com.cn) <br>\n\n\n## Skill Output: <br>\n**Output Type(s):** [Guidance, Markdown, Code, Shell commands, Configuration] <br>\n**Output Format:** [Markdown with database guidance, SQL or configuration snippets, and inline shell commands when needed] <br>\n**Output Parameters:** [1D] <br>\n**Other Properties Related to Output:** [Paid workflow may require order creation and payment verification before service guidance is delivered.] <br>\n\n## Skill Version(s): <br>\n1.0.23 (source: server release evidence) <br>\n\n## Ethical Considerations: <br>\nUsers should evaluate whether this skill is appropriate for their environment, review any generated or modified files before relying on them, and apply their organization's safety, security, and compliance requirements before deployment. <br>\n\nArchive v1.0.22: 6 files, 9167 bytes\n\nFiles: scripts/create_order.py (4028b), scripts/file_utils.py (2170b), scripts/service.py (3478b), skill-card.md (2571b), SKILL.md (5501b), _meta.json (139b)\n\nFile v1.0.22:SKILL.md\n\n---\r\nname: \"database-specialist\"\r\ndescription: >\r\n  Database schema design, SQL optimization, index strategy, and migration planning. User questions and encrypted payment credentials are transmitted via HTTPS to the clawtip third-party verification service for order creation and fulfillment. No database credentials, passwords, or connection strings are collected or transmitted.\r\nmetadata:\r\n  author: \"Yujin\"\r\n  category: \"expert\"\r\n  permissions:\r\n    - \"network.outbound\"\r\n    - \"credential.read\"\r\n    - \"filesystem.read\"\r\n    - \"filesystem.write\"\r\n  requires:\r\n    - \"clawtip-skill\"\r\n  workflow:\r\n    create_order:\r\n      script: scripts/create_order.py\r\n      args: [\"{question}\"]\r\n      outputs: [\"order_no\", \"amount\", \"indicator\"]\r\n    pay:\r\n      requires: clawtip-skill\r\n      args: [\"{order_no}\", \"{indicator}\"]\r\n    service:\r\n      script: scripts/service.py\r\n      args: [\"{order_no}\"]\r\n---\r\n\r\n# database-specialist\r\n\r\nPlease interact with users in Chinese (使用中文与用户交互).\r\n\r\n## 功能概述\r\n\r\n本技能提供数据库专项技术服务，覆盖 schema 设计审查、SQL 查询优化、索引策略制定和数据迁移规划。服务通过 clawtip 第三方身份验证后交付完整方案。\r\n\r\n### 核心能力\r\n\r\n**Schema 设计与审查**\r\n- 新表结构设计建议（规范化、反规范化权衡）\r\n- 现有 schema 的问题诊断与改进方案\r\n- 字段类型选型建议与性能影响评估\r\n- 主键/外键/约束的合理性审查\r\n\r\n**SQL 查询优化**\r\n- 慢查询分析与优化建议\r\n- 查询计划解读与索引匹配诊断\r\n- 子查询改写、JOIN 顺序优化\r\n- 分页查询、大批量操作的高效写法\r\n\r\n**索引策略**\r\n- 缺失索引识别与建议\r\n- 冗余/低效索引的合并与清理\r\n- 复合索引的字段顺序优化\r\n- 不同负载类型（OLTP/OLAP）的索引策略差异\r\n\r\n**数据迁移规划**\r\n- 数据库版本升级的迁移脚本审查\r\n- 跨数据库平台的 schema 转换建议\r\n- 大数据量表的数据迁移策略（分批、在线迁移）\r\n- 迁移回滚方案的完整性与安全性评估\r\n\r\n**性能诊断**\r\n- 锁竞争与死锁分析与缓解\r\n- 连接池配置与连接管理建议\r\n- 缓存策略（查询缓存、应用层缓存）指导\r\n- 慢日志配置与分析建议\r\n\r\n### 使用场景示例\r\n\r\n- \"我的订单表 500 万行后查询变慢，帮我看看 SQL\"\r\n- \"从 MySQL 8.0 迁到 PostgreSQL 16，这个表结构要怎么改\"\r\n- \"这个查询 EXPLAIN 显示全表扫描，能帮加索引吗\"\r\n- \"数据库每天凌晨有批量任务影响线上，怎么优化\"\r\n- \"现有的索引方案请帮我审查一下\"\r\n\r\n---\r\n\r\n## 数据处理与隐私说明\r\n\r\n本技能严格遵守数据最小化与透明传输原则，处理流程如下：\r\n\r\n### 本地处理（数据不离开本机）\r\n- 问题诊断与方案推理由 AI 在本地完成\r\n- 生成的 SQL 脚本、建表语句、索引建议由 AI 在本地产出\r\n\r\n### 远程传输（仅身份验证阶段）\r\n- **传输内容**：技能标识（slug）、订单号（orderNo）、加密支付凭证（SM4 加密，非明文）\r\n- **传输目标**：`https://api.ideaidea.com.cn`（clawtip 第三方验证服务）\r\n- **传输协议**：HTTPS + SM4 国密加密\r\n- **传输时机**：仅在订单创建和履约验证时发生\r\n\r\n### 本地存储\r\n- 订单元数据（含脱敏后的问题描述）存储至 `~/.openclaw/skills/orders/{indicator}/{order_no}.json`\r\n- 支付完成后建议可随时手动清理这些订单文件\r\n\r\n### 绝不收集或传输\r\n- 数据库连接信息、主机地址、端口号\r\n- 数据库账号密码、SSH 密钥\r\n- 生产环境配置、.env 文件内容\r\n- 表结构数据本身（仅用于问题分析，分析在本机完成）\r\n- 任何形式的敏感凭据\r\n\r\n每次网络请求前，脚本会明确打印将要传输的数据范围，用户可在此时中止操作。\r\n\r\n---\r\n\r\n## 如何开始使用\r\n\r\n本技能通过 clawtip 第三方服务完成身份验证。首次使用需经过以下流程；若已持有有效订单号且订单文件包含支付凭证，可直接跳到第三阶段。\r\n\r\n### 前置条件\r\n- 已安装 clawtip 第三方验证服务：`openclaw skills install clawtip`\r\n\r\n### 第一阶段：创建验证订单\r\n\r\n**所需参数：** `<question>` — 您的数据库问题或咨询内容。\r\n\r\n```bash\r\npython3 scripts/create_order.py \"<question>\"\r\n```\r\n\r\n运行前，脚本会显示如下通知，说明传输范围。确认后继续执行。\r\n\r\n**成功时**输出：\r\n```\r\nORDER_NO=<value>\r\nAMOUNT=<value>\r\nQUESTION=<value>\r\nINDICATOR=<value>\r\n```\r\n\r\n> AMOUNT 单位为人民币分。向用户展示时请除以 100 并以元为单位呈现。\r\n\r\n**失败时**以代码 1 退出，输出 `订单创建失败: <错误详情>`，须立即终止流程。\r\n\r\n### 第二阶段：身份验证\r\n\r\n使用技能 `clawtip` 完成支付验证，传入参数 `order_no` 和 `indicator`。支付凭证会自动写入本地订单文件。\r\n\r\n### 第三阶段：获取服务\r\n\r\n```bash\r\npython3 scripts/service.py \"<order_no>\"\r\n```\r\n\r\n运行前，脚本会显示如下通知，说明将发送加密支付凭证至验证服务。\r\n\r\n输出 `PAY_STATUS` 状态值，SUCCESS 时开始交付服务结果。\r\n\r\n---\r\n\r\n## 版本历史\r\n\r\n| Version | Date | Notes |\r\n|:---|:---|:---|\r\n| 1.0.1 | 2026-07-20 | Security review: add explicit data transmission notices, credential sanitization, transparent UA headers, restructured SKILL.md for clarity |\r\n| 1.0.0 | 2026-07-19 | Initial release |\n\nFile v1.0.22:_meta.json\n\n{\n  \"ownerId\": \"kn71ajnjnjnhwfs7mmzpg48t9d8af45f\",\n  \"slug\": \"database-specialist\",\n  \"version\": \"1.0.22\",\n  \"publishedAt\": 1784642089323\n}\n\nFile v1.0.22:skill-card.md\n\n## Description: <br>\nDatabase Specialist provides database schema design, SQL optimization, index strategy, migration planning, and performance-diagnosis guidance, with order creation and payment verification handled through a third-party Clawtip service. <br>\n\nThis skill is ready for commercial/non-commercial use. <br>\n\n## Publisher: <br>\n[jinyu12166](https://clawhub.ai/user/jinyu12166) <br>\n\n### License/Terms of Use: <br>\nMIT-0 <br>\n\n\n## Use Case: <br>\nDevelopers, database engineers, and application teams use this skill to review schema designs, tune SQL queries, plan indexes, assess migrations, and reason about database performance issues. <br>\n\n### Deployment Geography for Use: <br>\nGlobal <br>\n\n## Known Risks and Mitigations: <br>\nRisk: The workflow sends full database question text and encrypted payment credential data to a third-party service. <br>\nMitigation: Install only if this data sharing is acceptable, and avoid including schemas, queries, hostnames, connection strings, secrets, or production details in the question. <br>\nRisk: The skill requests network, credential, filesystem read, and filesystem write permissions that are broader than pure database advice requires. <br>\nMitigation: Review why credential access is needed before use, run in a constrained environment when possible, and clean up local order files after verification. <br>\nRisk: The service helper script may fail before completing the verification workflow. <br>\nMitigation: Review and test the helper scripts in an isolated environment before relying on the paid service flow. <br>\n\n\n## Reference(s): <br>\n- [ClawHub skill listing](https://clawhub.ai/jinyu12166/skills/database-specialist) <br>\n- [Third-party verification service](https://api.ideaidea.com.cn) <br>\n\n\n## Skill Output: <br>\n**Output Type(s):** [text, markdown, code, shell commands, configuration, guidance] <br>\n**Output Format:** [Chinese-language Markdown guidance with SQL snippets and helper-script status output] <br>\n**Output Parameters:** [1D] <br>\n**Other Properties Related to Output:** [Uses a paid verification workflow that writes local order JSON files and exchanges order and credential data with a third-party HTTPS service.] <br>\n\n## Skill Version(s): <br>\n1.0.22 (source: server evidence release.version) <br>\n\n## Ethical Considerations: <br>\nUsers should evaluate whether this skill is appropriate for their environment, review any generated or modified files before relying on them, and apply their organization's safety, security, and compliance requirements before deployment. <br>\n\nArchive v1.0.21: 6 files, 9085 bytes\n\nFiles: scripts/create_order.py (4028b), scripts/file_utils.py (2170b), scripts/service.py (3570b), skill-card.md (2292b), SKILL.md (5501b), _meta.json (139b)\n\nFile v1.0.21:SKILL.md\n\n---\r\nname: \"database-specialist\"\r\ndescription: >\r\n  Database schema design, SQL optimization, index strategy, and migration planning. User questions and encrypted payment credentials are transmitted via HTTPS to the clawtip third-party verification service for order creation and fulfillment. No database credentials, passwords, or connection strings are collected or transmitted.\r\nmetadata:\r\n  author: \"Yujin\"\r\n  category: \"expert\"\r\n  permissions:\r\n    - \"network.outbound\"\r\n    - \"credential.read\"\r\n    - \"filesystem.read\"\r\n    - \"filesystem.write\"\r\n  requires:\r\n    - \"clawtip-skill\"\r\n  workflow:\r\n    create_order:\r\n      script: scripts/create_order.py\r\n      args: [\"{question}\"]\r\n      outputs: [\"order_no\", \"amount\", \"indicator\"]\r\n    pay:\r\n      requires: clawtip-skill\r\n      args: [\"{order_no}\", \"{indicator}\"]\r\n    service:\r\n      script: scripts/service.py\r\n      args: [\"{order_no}\"]\r\n---\r\n\r\n# database-specialist\r\n\r\nPlease interact with users in Chinese (使用中文与用户交互).\r\n\r\n## 功能概述\r\n\r\n本技能提供数据库专项技术服务，覆盖 schema 设计审查、SQL 查询优化、索引策略制定和数据迁移规划。服务通过 clawtip 第三方身份验证后交付完整方案。\r\n\r\n### 核心能力\r\n\r\n**Schema 设计与审查**\r\n- 新表结构设计建议（规范化、反规范化权衡）\r\n- 现有 schema 的问题诊断与改进方案\r\n- 字段类型选型建议与性能影响评估\r\n- 主键/外键/约束的合理性审查\r\n\r\n**SQL 查询优化**\r\n- 慢查询分析与优化建议\r\n- 查询计划解读与索引匹配诊断\r\n- 子查询改写、JOIN 顺序优化\r\n- 分页查询、大批量操作的高效写法\r\n\r\n**索引策略**\r\n- 缺失索引识别与建议\r\n- 冗余/低效索引的合并与清理\r\n- 复合索引的字段顺序优化\r\n- 不同负载类型（OLTP/OLAP）的索引策略差异\r\n\r\n**数据迁移规划**\r\n- 数据库版本升级的迁移脚本审查\r\n- 跨数据库平台的 schema 转换建议\r\n- 大数据量表的数据迁移策略（分批、在线迁移）\r\n- 迁移回滚方案的完整性与安全性评估\r\n\r\n**性能诊断**\r\n- 锁竞争与死锁分析与缓解\r\n- 连接池配置与连接管理建议\r\n- 缓存策略（查询缓存、应用层缓存）指导\r\n- 慢日志配置与分析建议\r\n\r\n### 使用场景示例\r\n\r\n- \"我的订单表 500 万行后查询变慢，帮我看看 SQL\"\r\n- \"从 MySQL 8.0 迁到 PostgreSQL 16，这个表结构要怎么改\"\r\n- \"这个查询 EXPLAIN 显示全表扫描，能帮加索引吗\"\r\n- \"数据库每天凌晨有批量任务影响线上，怎么优化\"\r\n- \"现有的索引方案请帮我审查一下\"\r\n\r\n---\r\n\r\n## 数据处理与隐私说明\r\n\r\n本技能严格遵守数据最小化与透明传输原则，处理流程如下：\r\n\r\n### 本地处理（数据不离开本机）\r\n- 问题诊断与方案推理由 AI 在本地完成\r\n- 生成的 SQL 脚本、建表语句、索引建议由 AI 在本地产出\r\n\r\n### 远程传输（仅身份验证阶段）\r\n- **传输内容**：技能标识（slug）、订单号（orderNo）、加密支付凭证（SM4 加密，非明文）\r\n- **传输目标**：`https://api.ideaidea.com.cn`（clawtip 第三方验证服务）\r\n- **传输协议**：HTTPS + SM4 国密加密\r\n- **传输时机**：仅在订单创建和履约验证时发生\r\n\r\n### 本地存储\r\n- 订单元数据（含脱敏后的问题描述）存储至 `~/.openclaw/skills/orders/{indicator}/{order_no}.json`\r\n- 支付完成后建议可随时手动清理这些订单文件\r\n\r\n### 绝不收集或传输\r\n- 数据库连接信息、主机地址、端口号\r\n- 数据库账号密码、SSH 密钥\r\n- 生产环境配置、.env 文件内容\r\n- 表结构数据本身（仅用于问题分析，分析在本机完成）\r\n- 任何形式的敏感凭据\r\n\r\n每次网络请求前，脚本会明确打印将要传输的数据范围，用户可在此时中止操作。\r\n\r\n---\r\n\r\n## 如何开始使用\r\n\r\n本技能通过 clawtip 第三方服务完成身份验证。首次使用需经过以下流程；若已持有有效订单号且订单文件包含支付凭证，可直接跳到第三阶段。\r\n\r\n### 前置条件\r\n- 已安装 clawtip 第三方验证服务：`openclaw skills install clawtip`\r\n\r\n### 第一阶段：创建验证订单\r\n\r\n**所需参数：** `<question>` — 您的数据库问题或咨询内容。\r\n\r\n```bash\r\npython3 scripts/create_order.py \"<question>\"\r\n```\r\n\r\n运行前，脚本会显示如下通知，说明传输范围。确认后继续执行。\r\n\r\n**成功时**输出：\r\n```\r\nORDER_NO=<value>\r\nAMOUNT=<value>\r\nQUESTION=<value>\r\nINDICATOR=<value>\r\n```\r\n\r\n> AMOUNT 单位为人民币分。向用户展示时请除以 100 并以元为单位呈现。\r\n\r\n**失败时**以代码 1 退出，输出 `订单创建失败: <错误详情>`，须立即终止流程。\r\n\r\n### 第二阶段：身份验证\r\n\r\n使用技能 `clawtip` 完成支付验证，传入参数 `order_no` 和 `indicator`。支付凭证会自动写入本地订单文件。\r\n\r\n### 第三阶段：获取服务\r\n\r\n```bash\r\npython3 scripts/service.py \"<order_no>\"\r\n```\r\n\r\n运行前，脚本会显示如下通知，说明将发送加密支付凭证至验证服务。\r\n\r\n输出 `PAY_STATUS` 状态值，SUCCESS 时开始交付服务结果。\r\n\r\n---\r\n\r\n## 版本历史\r\n\r\n| Version | Date | Notes |\r\n|:---|:---|:---|\r\n| 1.0.1 | 2026-07-20 | Security review: add explicit data transmission notices, credential sanitization, transparent UA headers, restructured SKILL.md for clarity |\r\n| 1.0.0 | 2026-07-19 | Initial release |\n\nFile v1.0.21:_meta.json\n\n{\n  \"ownerId\": \"kn71ajnjnjnhwfs7mmzpg48t9d8af45f\",\n  \"slug\": \"database-specialist\",\n  \"version\": \"1.0.21\",\n  \"publishedAt\": 1784640978227\n}\n\nFile v1.0.21:skill-card.md\n\n## Description: <br>\nDatabase Specialist provides database schema design, SQL optimization, index strategy, migration planning, and performance diagnostic guidance after a paid third-party verification flow. <br>\n\nThis skill is ready for commercial/non-commercial use. <br>\n\n## Publisher: <br>\n[jinyu12166](https://clawhub.ai/user/jinyu12166) <br>\n\n### License/Terms of Use: <br>\nMIT-0 <br>\n\n\n## Use Case: <br>\nDevelopers and database engineers use this skill to get guidance on schema review, slow query optimization, index design, database migration planning, and operational performance issues. <br>\n\n### Deployment Geography for Use: <br>\nGlobal <br>\n\n## Known Risks and Mitigations: <br>\nRisk: Database questions may include schema details, SQL, migration plans, customer data, secrets, or business-sensitive context. <br>\nMitigation: Use only sanitized questions and remove credentials, customer data, production configuration, and other sensitive details before invoking the skill. <br>\nRisk: The skill sends user questions and payment verification data to a third-party service. <br>\nMitigation: Install and run the skill only if the user trusts api.ideaidea.com.cn and the clawtip payment flow. <br>\nRisk: Local order files may persist on disk after payment verification. <br>\nMitigation: Review and manually delete local order files after use when they are no longer needed. <br>\nRisk: The authoritative security verdict is suspicious. <br>\nMitigation: Review the skill and its third-party verification behavior before installation or deployment. <br>\n\n\n## Reference(s): <br>\n\n\n## Skill Output: <br>\n**Output Type(s):** [Guidance, Markdown, Code, Shell commands, Configuration] <br>\n**Output Format:** [Markdown guidance with SQL, command, and configuration examples when relevant] <br>\n**Output Parameters:** [1D] <br>\n**Other Properties Related to Output:** [Requires a clawtip verification workflow before service delivery.] <br>\n\n## Skill Version(s): <br>\n1.0.21 (source: server release evidence) <br>\n\n## Ethical Considerations: <br>\nUsers should evaluate whether this skill is appropriate for their environment, review any generated or modified files before relying on them, and apply their organization's safety, security, and compliance requirements before deployment. <br>\n\nArchive v1.0.20: 6 files, 8819 bytes\n\nFiles: scripts/create_order.py (3791b), scripts/file_utils.py (2170b), scripts/service.py (3265b), skill-card.md (2046b), SKILL.md (5190b), _meta.json (139b)\n\nFile v1.0.20:SKILL.md\n\n---\r\nname: \"database-specialist\"\r\ndescription: >\r\n  Database schema design, SQL optimization, index strategy, and migration planning. User questions and encrypted payment credentials are transmitted via HTTPS to the clawtip third-party verification service for order creation and fulfillment. No database credentials, passwords, or connection strings are collected or transmitted.\r\nmetadata:\r\n  author: \"Yujin\"\r\n  category: \"expert\"\r\n  permissions:\r\n    - \"network.outbound\"\r\n    - \"credential.read\"\r\n    - \"filesystem.read\"\r\n    - \"filesystem.write\"\r\n  requires:\r\n    - \"clawtip-skill\"\r\n---\r\n\r\n# database-specialist\r\n\r\nPlease interact with users in Chinese (使用中文与用户交互).\r\n\r\n## 功能概述\r\n\r\n本技能提供数据库专项技术服务，覆盖 schema 设计审查、SQL 查询优化、索引策略制定和数据迁移规划。服务通过 clawtip 第三方身份验证后交付完整方案。\r\n\r\n### 核心能力\r\n\r\n**Schema 设计与审查**\r\n- 新表结构设计建议（规范化、反规范化权衡）\r\n- 现有 schema 的问题诊断与改进方案\r\n- 字段类型选型建议与性能影响评估\r\n- 主键/外键/约束的合理性审查\r\n\r\n**SQL 查询优化**\r\n- 慢查询分析与优化建议\r\n- 查询计划解读与索引匹配诊断\r\n- 子查询改写、JOIN 顺序优化\r\n- 分页查询、大批量操作的高效写法\r\n\r\n**索引策略**\r\n- 缺失索引识别与建议\r\n- 冗余/低效索引的合并与清理\r\n- 复合索引的字段顺序优化\r\n- 不同负载类型（OLTP/OLAP）的索引策略差异\r\n\r\n**数据迁移规划**\r\n- 数据库版本升级的迁移脚本审查\r\n- 跨数据库平台的 schema 转换建议\r\n- 大数据量表的数据迁移策略（分批、在线迁移）\r\n- 迁移回滚方案的完整性与安全性评估\r\n\r\n**性能诊断**\r\n- 锁竞争与死锁分析与缓解\r\n- 连接池配置与连接管理建议\r\n- 缓存策略（查询缓存、应用层缓存）指导\r\n- 慢日志配置与分析建议\r\n\r\n### 使用场景示例\r\n\r\n- \"我的订单表 500 万行后查询变慢，帮我看看 SQL\"\r\n- \"从 MySQL 8.0 迁到 PostgreSQL 16，这个表结构要怎么改\"\r\n- \"这个查询 EXPLAIN 显示全表扫描，能帮加索引吗\"\r\n- \"数据库每天凌晨有批量任务影响线上，怎么优化\"\r\n- \"现有的索引方案请帮我审查一下\"\r\n\r\n---\r\n\r\n## 数据处理与隐私说明\r\n\r\n本技能严格遵守数据最小化与透明传输原则，处理流程如下：\r\n\r\n### 本地处理（数据不离开本机）\r\n- 问题诊断与方案推理由 AI 在本地完成\r\n- 生成的 SQL 脚本、建表语句、索引建议由 AI 在本地产出\r\n\r\n### 远程传输（仅身份验证阶段）\r\n- **传输内容**：技能标识（slug）、订单号（orderNo）、加密支付凭证（SM4 加密，非明文）\r\n- **传输目标**：`https://api.ideaidea.com.cn`（clawtip 第三方验证服务）\r\n- **传输协议**：HTTPS + SM4 国密加密\r\n- **传输时机**：仅在订单创建和履约验证时发生\r\n\r\n### 本地存储\r\n- 订单元数据（含脱敏后的问题描述）存储至 `~/.openclaw/skills/orders/{indicator}/{order_no}.json`\r\n- 支付完成后建议可随时手动清理这些订单文件\r\n\r\n### 绝不收集或传输\r\n- 数据库连接信息、主机地址、端口号\r\n- 数据库账号密码、SSH 密钥\r\n- 生产环境配置、.env 文件内容\r\n- 表结构数据本身（仅用于问题分析，分析在本机完成）\r\n- 任何形式的敏感凭据\r\n\r\n每次网络请求前，脚本会明确打印将要传输的数据范围，用户可在此时中止操作。\r\n\r\n---\r\n\r\n## 如何开始使用\r\n\r\n本技能通过 clawtip 第三方服务完成身份验证。首次使用需经过以下流程；若已持有有效订单号且订单文件包含支付凭证，可直接跳到第三阶段。\r\n\r\n### 前置条件\r\n- 已安装 clawtip 第三方验证服务：`openclaw skills install clawtip`\r\n\r\n### 第一阶段：创建验证订单\r\n\r\n**所需参数：** `<question>` — 您的数据库问题或咨询内容。\r\n\r\n```bash\r\npython3 scripts/create_order.py \"<question>\"\r\n```\r\n\r\n运行前，脚本会显示如下通知，说明传输范围。确认后继续执行。\r\n\r\n**成功时**输出：\r\n```\r\nORDER_NO=<value>\r\nAMOUNT=<value>\r\nQUESTION=<value>\r\nINDICATOR=<value>\r\n```\r\n\r\n> AMOUNT 单位为人民币分。向用户展示时请除以 100 并以元为单位呈现。\r\n\r\n**失败时**以代码 1 退出，输出 `订单创建失败: <错误详情>`，须立即终止流程。\r\n\r\n### 第二阶段：身份验证\r\n\r\n使用技能 `clawtip` 完成支付验证，传入参数 `order_no` 和 `indicator`。支付凭证会自动写入本地订单文件。\r\n\r\n### 第三阶段：获取服务\r\n\r\n```bash\r\npython3 scripts/service.py \"<order_no>\"\r\n```\r\n\r\n运行前，脚本会显示如下通知，说明将发送加密支付凭证至验证服务。\r\n\r\n输出 `PAY_STATUS` 状态值，SUCCESS 时开始交付服务结果。\r\n\r\n---\r\n\r\n## 版本历史\r\n\r\n| Version | Date | Notes |\r\n|:---|:---|:---|\r\n| 1.0.1 | 2026-07-20 | Security review: add explicit data transmission notices, credential sanitization, transparent UA headers, restructured SKILL.md for clarity |\r\n| 1.0.0 | 2026-07-19 | Initial release |\n\nFile v1.0.20:_meta.json\n\n{\n  \"ownerId\": \"kn71ajnjnjnhwfs7mmzpg48t9d8af45f\",\n  \"slug\": \"database-specialist\",\n  \"version\": \"1.0.20\",\n  \"publishedAt\": 1784629821551\n}\n\nFile v1.0.20:skill-card.md\n\n## Description: <br>\nDatabase Specialist provides database schema, SQL, index, performance, and migration guidance while using clawtip third-party HTTPS calls for order creation and payment verification. <br>\n\nThis skill is ready for commercial/non-commercial use. <br>\n\n## Publisher: <br>\n[jinyu12166](https://clawhub.ai/user/jinyu12166) <br>\n\n### License/Terms of Use: <br>\nMIT-0 <br>\n\n\n## Use Case: <br>\nDevelopers and database practitioners use this skill to review schemas, optimize SQL, plan indexes, diagnose performance issues, and plan database migrations. Users should avoid including credentials, hostnames, production configuration, or sensitive schema details in consultation questions sent through the paid verification flow. <br>\n\n### Deployment Geography for Use: <br>\nGlobal <br>\n\n## Known Risks and Mitigations: <br>\nRisk: Review before execution as proposals could introduce incorrect or misleading guidance into skills. <br>\nMitigation: Review and scan skill before deployment. <br>\n\n## Reference(s): <br>\n- [ClawHub skill page](https://clawhub.ai/jinyu12166/skills/database-specialist) <br>\n- [Publisher profile](https://clawhub.ai/user/jinyu12166) <br>\n- [clawtip verification service endpoint](https://api.ideaidea.com.cn) <br>\n\n\n## Skill Output: <br>\n**Output Type(s):** [guidance, markdown, code, shell commands, configuration] <br>\n**Output Format:** [Markdown and plain text with optional SQL or shell command snippets] <br>\n**Output Parameters:** [1D] <br>\n**Other Properties Related to Output:** [Primarily Chinese-language interaction; full service requires clawtip paid verification and may create local order JSON files.] <br>\n\n## Skill Version(s): <br>\n1.0.20 (source: server release evidence; artifact version history lists 1.0.1) <br>\n\n## Ethical Considerations: <br>\nUsers should evaluate whether this skill is appropriate for their environment, review any generated or modified files before relying on them, and apply their organization's safety, security, and compliance requirements before deployment. <br>\n\nArchive v1.0.19: 6 files, 8565 bytes\n\nFiles: scripts/create_order.py (3482b), scripts/file_utils.py (2170b), scripts/service.py (2888b), skill-card.md (2225b), SKILL.md (4872b), _meta.json (139b)\n\nFile v1.0.19:SKILL.md\n\n---\nname: \"database-specialist\"\ndescription: >\n  Database schema design, SQL optimization, index strategy, and migration planning. User questions are transmitted via HTTPS to a clawtip third-party verification service for order creation; order metadata is stored locally in ~/.openclaw/skills/orders/. No database credentials, passwords, or connection strings are collected or transmitted.\nmetadata:\n  author: \"Yujin\"\n  category: \"expert\"\n  permissions:\n    - \"network.outbound\"\n    - \"credential.read\"\n    - \"filesystem.read\"\n    - \"filesystem.write\"\n  requires:\n    - \"clawtip-skill\"\n---\n\n# database-specialist\n\nPlease interact with users in Chinese (使用中文与用户交互).\n\n## 功能概述\n\n本技能提供数据库专项技术服务，覆盖 schema 设计审查、SQL 查询优化、索引策略制定和数据迁移规划。服务通过 clawtip 第三方身份验证后交付完整方案。\n\n### 核心能力\n\n**Schema 设计与审查**\n- 新表结构设计建议（规范化、反规范化权衡）\n- 现有 schema 的问题诊断与改进方案\n- 字段类型选型建议与性能影响评估\n- 主键/外键/约束的合理性审查\n\n**SQL 查询优化**\n- 慢查询分析与优化建议\n- 查询计划解读与索引匹配诊断\n- 子查询改写、JOIN 顺序优化\n- 分页查询、大批量操作的高效写法\n\n**索引策略**\n- 缺失索引识别与建议\n- 冗余/低效索引的合并与清理\n- 复合索引的字段顺序优化\n- 不同负载类型（OLTP/OLAP）的索引策略差异\n\n**数据迁移规划**\n- 数据库版本升级的迁移脚本审查\n- 跨数据库平台的 schema 转换建议\n- 大数据量表的数据迁移策略（分批、在线迁移）\n- 迁移回滚方案的完整性与安全性评估\n\n**性能诊断**\n- 锁竞争与死锁分析与缓解\n- 连接池配置与连接管理建议\n- 缓存策略（查询缓存、应用层缓存）指导\n- 慢日志配置与分析建议\n\n### 使用场景示例\n\n- \"我的订单表 500 万行后查询变慢，帮我看看 SQL\"\n- \"从 MySQL 8.0 迁到 PostgreSQL 16，这个表结构要怎么改\"\n- \"这个查询 EXPLAIN 显示全表扫描，能帮加索引吗\"\n- \"数据库每天凌晨有批量任务影响线上，怎么优化\"\n- \"现有的索引方案请帮我审查一下\"\n\n---\n\n## 数据处理与隐私说明\n\n本技能严格遵守数据最小化与透明传输原则，处理流程如下：\n\n### 本地处理（数据不离开本机）\n- 问题诊断与方案推理由 AI 在本地完成\n- 生成的 SQL 脚本、建表语句、索引建议由 AI 在本地产出\n\n### 远程传输（仅身份验证阶段）\n- **传输内容**：技能标识（slug）、订单号（orderNo）、加密支付凭证（SM4 加密，非明文）\n- **传输目标**：`https://api.ideaidea.com.cn`（clawtip 第三方验证服务）\n- **传输协议**：HTTPS + SM4 国密加密\n- **传输时机**：仅在订单创建和履约验证时发生\n\n### 本地存储\n- 订单元数据（含脱敏后的问题描述）存储至 `~/.openclaw/skills/orders/{indicator}/{order_no}.json`\n- 支付完成后建议可随时手动清理这些订单文件\n\n### 绝不收集或传输\n- 数据库连接信息、主机地址、端口号\n- 数据库账号密码、SSH 密钥\n- 生产环境配置、.env 文件内容\n- 表结构数据本身（仅用于问题分析，分析在本机完成）\n- 任何形式的敏感凭据\n\n每次网络请求前，脚本会明确打印将要传输的数据范围，用户可在此时中止操作。\n\n---\n\n## 如何开始使用\n\n本技能通过 clawtip 第三方服务完成身份验证。首次使用需经过以下流程；若已持有有效订单号且订单文件包含支付凭证，可直接跳到第三阶段。\n\n### 前置条件\n- 已安装 clawtip 第三方验证服务：`openclaw skills install clawtip`\n\n### 第一阶段：创建验证订单\n\n**所需参数：** `<question>` — 您的数据库问题或咨询内容。\n\n```bash\npython3 scripts/create_order.py \"<question>\"\n```\n\n**成功时**输出：\n```\nORDER_NO=<value>\nAMOUNT=<value>\nQUESTION=<value>\nINDICATOR=<value>\n```\n\n> AMOUNT 单位为人民币分。向用户展示时请除以 100 并以元为单位呈现。\n\n**失败时**以代码 1 退出，输出 `订单创建失败: <错误详情>`，须立即终止流程。\n\n### 第二阶段：身份验证\n\n使用技能 `clawtip` 完成支付验证，传入参数 `order_no` 和 `indicator`。支付凭证会自动写入本地订单文件。\n\n### 第三阶段：获取服务\n\n```bash\npython3 scripts/service.py \"<order_no>\"\n```\n\n输出 `PAY_STATUS` 状态值，SUCCESS 时开始交付服务结果。\n\n---\n\n## 版本历史\n\n| Version | Date | Notes |\n|:---|:---|:---|\n| 1.0.1 | 2026-07-20 | Security review: add explicit data transmission notices, credential sanitization, transparent UA headers, restructured SKILL.md for clarity |\n| 1.0.0 | 2026-07-19 | Initial release |\n\nFile v1.0.19:_meta.json\n\n{\n  \"ownerId\": \"kn71ajnjnjnhwfs7mmzpg48t9d8af45f\",\n  \"slug\": \"database-specialist\",\n  \"version\": \"1.0.19\",\n  \"publishedAt\": 1784562109909\n}\n\nFile v1.0.19:skill-card.md\n\n## Description: <br>\nDatabase Specialist helps agents provide database schema design, SQL optimization, index strategy, migration planning, and performance diagnosis guidance, with a disclosed third-party order verification flow. <br>\n\nThis skill is ready for commercial/non-commercial use. <br>\n\n## Publisher: <br>\n[jinyu12166](https://clawhub.ai/user/jinyu12166) <br>\n\n### License/Terms of Use: <br>\nMIT-0 <br>\n\n\n## Use Case: <br>\nDevelopers, database engineers, and operators use this skill to obtain Chinese-language guidance on schema reviews, query tuning, index design, migration planning, and database performance issues. <br>\n\n### Deployment Geography for Use: <br>\nGlobal <br>\n\n## Known Risks and Mitigations: <br>\nRisk: User questions and payment data are transmitted to a third-party verification service, and the security summary flags a mismatch between privacy claims and actual question transmission. <br>\nMitigation: Review before installing and avoid entering real credentials, connection strings, production configuration, proprietary schema, or sensitive business data. <br>\nRisk: The workflow writes local order metadata and uses a payment credential during service verification. <br>\nMitigation: Inspect and manage the local order files after use, and only run the verification scripts in an environment where this local storage is acceptable. <br>\n\n\n## Reference(s): <br>\n- [ClawHub skill page](https://clawhub.ai/jinyu12166/skills/database-specialist) <br>\n\n\n## Skill Output: <br>\n**Output Type(s):** [guidance, markdown, code, shell commands, configuration] <br>\n**Output Format:** [Markdown with SQL, configuration, and shell command examples when relevant] <br>\n**Output Parameters:** [1D] <br>\n**Other Properties Related to Output:** [Chinese-language technical guidance; local order metadata may be written during the verification workflow.] <br>\n\n## Skill Version(s): <br>\n1.0.19 (source: server release metadata) <br>\n\n## Ethical Considerations: <br>\nUsers should evaluate whether this skill is appropriate for their environment, review any generated or modified files before relying on them, and apply their organization's safety, security, and compliance requirements before deployment. <br>","readmeExcerpt":"Skill: database-specialist Owner: jinyu12166 Summary: Database architecture design, SQL optimization, schema review and migration planning. AI-delivered service via clawtip verification. Tags: latest:1.0.28 Version history: v1.0.28 | 2026-07-28T12:49:50.828Z | user Version 1.0.28 - Added scripts/sm4_utils.py utility script. - Removed the skill-card.md file. v1.0.27 | 2026-07-28T06:18:48.894Z | user - Removed document","codeSnippets":[],"executableExamples":[{"language":"bash","snippet":"openclaw skills install clawtip"},{"language":"bash","snippet":"python3 scripts/create_order.py \"<question>\""},{"language":"text","snippet":"ORDER_NO=<订单号>\nAMOUNT=<金额（单位：分，除以 100 得元）>\nQUESTION=<问题内容>\nINDICATOR=<标识哈希>"},{"language":"text","snippet":"订单创建失败: <错误详情>"},{"language":"bash","snippet":"npx --yes @clawtip/clawtip-sandbox-cli@1.0.0 pay \\\n  -o <ORDER_NO> \\\n  -i <INDICATOR> \\\n  -v 1.0.12"},{"language":"json","snippet":"{\n  \"orderNo\": \"<ORDER_NO>\",\n  \"indicator\": \"<INDICATOR>\"\n}"}],"parameters":null,"dependencies":[],"permissions":[],"extractedFiles":[{"path":"SKILL.md","content":"---\nname: \"database-specialist\"\nversion: \"1.1.0\"\ndescription: >\n  Database architecture design, SQL optimization, schema review and migration planning. AI-delivered service via clawtip verification.\nmetadata:\n  author: \"Yujin\"\n  category: \"expert\"\n  permissions:\n    - \"network.outbound\"\n    - \"credential.read\"\n    - \"filesystem.read\"\n    - \"filesystem.write\"\n  requires:\n    - \"clawtip\"\n  workflow:\n    create_order:\n      script: scripts/create_order.py\n      args: [\"{question}\"]\n      outputs: [\"order_no\", \"amount\", \"indicator\"]\n    pay:\n      requires: clawtip\n      args: [\"{order_no}\", \"{indicator}\"]\n    service:\n      script: scripts/service.py\n      args: [\"{order_no}\"]\n---\n\n# database-specialist\n\n请使用中文与用户交互。\n\n## 技能概述\n\n数据库专家服务，覆盖架构设计、SQL 查询优化、Schema 审查和迁移规划。付费服务，通过 clawtip 完成支付验证后由 AI 模型交付诊断结果。\n\n**直接执行：** 如果用户已提供订单号（且订单文件包含 payCredential），直接跳到第三阶段。\n\n---\n\n## 环境变量配置\n\n| 变量名 | 必填 | 说明 |\n|--------|------|------|\n| `CLAWTIP_PAY_TO` | 是 | clawtip 商户收款地址 |\n| `CLAWTIP_SM4_KEY` | 是 | SM4 加密密钥（十六进制，32 字符） |\n\n---\n\n## 前置条件\n\n```bash\nopenclaw skills install clawtip\n```\n\n---\n\n## 🛒 第一阶段：创建订单\n\n### 执行命令\n\n```bash\npython3 scripts/create_order.py \"<question>\"\n```\n\n### 成功输出\n\n```\nORDER_NO=<订单号>\nAMOUNT=<金额（单位：分，除以 100 得元）>\nQUESTION=<问题内容>\nINDICATOR=<标识哈希>\n```\n\n### 失败处理\n\n```\n订单创建失败: <错误详情>\n```\n\n> [!CAUTION]\n> 脚本非零退出立即终止工作流。\n\n---\n\n## 💳 第二阶段：支付处理\n\n### 测试环境（沙箱）\n\n```bash\nnpx --yes @clawtip/clawtip-sandbox-cli@1.0.0 pay \\\n  -o <ORDER_NO> \\\n  -i <INDICATOR> \\\n  -v 1.0.12\n```\n\n### 生产环境\n\n调用 **clawtip** 钱包技能：\n\n```json\n{\n  \"orderNo\": \"<ORDER_NO>\",\n  \"indicator\": \"<INDICATOR>\"\n}\n```\n\n> [!CAUTION]\n> 技能名称必须严格等于 `clawtip`。\n\n---\n\n## 🚀 第三阶段：服务执行\n\n支付成功后执行：\n\n```bash\npython3 scripts/service.py \"<order_no>\"\n```\n\n输出 `PAY_STATUS: SUCCESS | ERROR`。\n\n---\n\n## 数据处理说明\n\n### 本地存储\n订单元数据保存至 `~/.openclaw/skills/orders/{indicator}/{order_no}.json`。\n\n### 远程传输\n本技能自身不发起任何远程 HTTP 请求。支付验证由 clawtip 官方钱包处理。\n\n### 绝不收集或传输\n数据库 Schema、连接字符串、查询日志、凭证或项目文件。\n\n---\n\n## 版本历史\n\n| Version | Date | Notes |\n|:--------|:-----|:------|\n| 1.1.0 | 2026-07-28 | Switch to official clawtip wallet; remove api.ideaidea.com.cn |\n| 1.0.26 | 2026-07-28 | Fix ClawHub audit |\n| 1.0.1 | 2026-07-20 | Fix payment flow |\n| 1.0.0 | 2026-07-19 | Initial release |"},{"path":"_meta.json","content":"{\n  \"ownerId\": \"kn71ajnjnjnhwfs7mmzpg48t9d8af45f\",\n  \"slug\": \"database-specialist\",\n  \"version\": \"1.0.28\",\n  \"publishedAt\": 1785242990828\n}"},{"path":"skill-card.md","content":"## Description:\n\nDatabase architecture design, SQL optimization, schema review and migration planning, delivered as an AI service after clawtip verification.\n\nThis skill is ready for commercial/non-commercial use.\n\n## Publisher:\n\n[jinyu12166](https://clawhub.ai/user/jinyu12166)\n\n### License/Terms of Use:\n\nMIT-0\n\n## Use Case:\n\nDevelopers and database teams use this skill to request paid, Chinese-language help with database architecture, SQL optimization, schema review, and migration planning after clawtip payment verification.\n\n### Deployment Geography for Use:\n\nGlobal\n\n## Known Risks and Mitigations:\n\nRisk: The security review marks the release suspicious because it centers on a paid clawtip flow with broad permissions, external tooling, and weakly protected local order records.\n\nMitigation: Review the skill carefully before installation, run it in a constrained environment, and use it only with verified clawtip payment tooling.\n\nRisk: Consultation questions may accidentally include database credentials, connection strings, private schema details, or sensitive logs.\n\nMitigation: Remove secrets and private operational data from the question before creating an order.\n\nRisk: Local order and payment metadata are stored on the user's machine.\n\nMitigation: Treat local order files as sensitive, restrict access to the user profile, and remove stale records when they are no longer needed.\n\n## Reference(s):\n\n- [ClawHub Skill Page](https://clawhub.ai/jinyu12166/skills/database-specialist)\n\n## Skill Output:\n\n**Output Type(s):** [Text, Markdown, Shell commands, Configuration, Guidance]\n\n**Output Format:** [Markdown guidance with shell commands and JSON status lines]\n\n**Output Parameters:** [1D]\n\n**Other Properties Related to Output:** [Requires clawtip verification and may create local order metadata before service output is authorized.]\n\n## Skill Version(s):\n\n1.0.28 (source: server release metadata and changelog)\n\n## Ethical Considerations:\n\nUsers should evaluate whether this skill is appropriate for their environment, review any generated or modified files before relying on them, and apply their organization's safety, security, and compliance requirements before deployment."}],"languages":[],"docsSourceLabel":"CLAWHUB","editorialOverview":"Database architecture design, SQL optimization, schema review and migration planning. AI-delivered service via clawtip verification. Skill: database-specialist Owner: jinyu12166 Summary: Database architecture design, SQL optimization, schema review and migration planning. AI-delivered service via clawtip verification. Tags: latest:1.0.28 Version history: v1.0.28 | 2026-07-28T12:49:50.828Z | user Version 1.0.28 - Added scripts/sm4_utils.py utility script. - Removed the skill-card.md file. v1.0.27 | 2026-07-28T06:18:48.894Z | user - Removed document","editorialQuality":{"score":100,"threshold":65,"status":"ready","wordCount":1044,"uniquenessScore":51,"reasons":[]}},"media":{"evidence":{"source":"no-media","verified":false,"confidence":"low","updatedAt":"2026-10-09T19:46:24.738Z","emptyReason":"No screenshots, media assets, or demo links are available."},"primaryImageUrl":null,"mediaAssetCount":0,"assets":[],"demoUrl":null},"ownerResources":{"evidence":{"source":"unclaimed","verified":false,"confidence":"low","updatedAt":"2026-10-09T19:46:24.738Z","emptyReason":"This page has not been claimed by the agent owner."},"hasCustomPage":false,"customPageUpdatedAt":null,"customLinks":[],"structuredLinks":{"docsUrl":null,"demoUrl":null,"supportUrl":null,"pricingUrl":null,"statusUrl":null},"customPage":null},"relatedAgents":{"evidence":{"source":"protocol-neighbors","verified":false,"confidence":"medium","updatedAt":"2026-10-09T23:50:42.974Z","emptyReason":null},"items":[{"id":"8ebccd8e-3863-4187-8355-c3f14e1f9edf","entityType":"agent","canonicalPath":"/agent/iofficeai-aionui","slug":"iofficeai-aionui","name":"AionUi","description":"Free, local, open-source 24/7 Cowork app and OpenClaw for Gemini CLI, Claude Code, Codex, OpenCode, Qwen Code, Goose CLI, Auggie, and more | 🌟 Star if you like it!","url":"https://github.com/iOfficeAI/AionUi","homepage":"https://www.aionui.com","source":"GITHUB_REPOS","protocols":["MCP","OPENCLAW"],"capabilities":[],"safetyScore":100,"overallRank":70,"updatedAt":"2026-10-09T19:11:12.944Z","createdAt":"2026-02-25T03:38:16.584Z","downloads":null},{"id":"b917f68a-ebff-438e-84f8-3f4b2494c0bc","entityType":"agent","canonicalPath":"/agent/activepieces-activepieces","slug":"activepieces-activepieces","name":"activepieces","description":"AI Agents & MCPs & AI Workflow Automation • (~400 MCP servers for AI agents) • AI Automation / AI Agent with MCPs • AI Workflows & AI Agents • MCPs for AI Agents","url":"https://github.com/activepieces/activepieces","homepage":"https://www.activepieces.com","source":"GITHUB_REPOS","protocols":["OPENCLAW"],"capabilities":[],"safetyScore":100,"overallRank":70,"updatedAt":"2026-04-15T02:22:12.426Z","createdAt":"2026-02-25T03:38:12.412Z","downloads":null},{"id":"5cb26759-3a39-483f-94cf-276a98c13bb8","entityType":"agent","canonicalPath":"/agent/cherryhq-cherry-studio","slug":"cherryhq-cherry-studio","name":"cherry-studio","description":"AI productivity studio with smart chat, autonomous agents, and 300+ assistants. Unified access to frontier LLMs","url":"https://github.com/CherryHQ/cherry-studio","homepage":"https://cherry-ai.com","source":"GITHUB_REPOS","protocols":["MCP","OPENCLAW"],"capabilities":[],"safetyScore":100,"overallRank":70,"updatedAt":"2026-04-11T14:38:40.986Z","createdAt":"2026-02-25T03:38:19.379Z","downloads":null},{"id":"6f6582d0-5d76-4f0f-b81d-86520247950b","entityType":"agent","canonicalPath":"/agent/copilotkit-copilotkit","slug":"copilotkit-copilotkit","name":"CopilotKit","description":"The Frontend for Agents & Generative UI. React + Angular","url":"https://github.com/CopilotKit/CopilotKit","homepage":"https://docs.copilotkit.ai","source":"GITHUB_REPOS","protocols":["OPENCLAW"],"capabilities":[],"safetyScore":100,"overallRank":70,"updatedAt":"2026-03-25T09:50:57.846Z","createdAt":"2026-02-25T03:39:14.617Z","downloads":null}],"links":{"hub":"/agent","source":"/agent/source/clawhub","protocols":[{"label":"OpenClaw","href":"/agent/protocol/openclew"}]}}}