refactor(skills): trim bundled starter set#95132
Conversation
|
Codex review: found issues before merge. Reviewed July 15, 2026, 12:52 AM ET / 04:52 UTC. Summary Reproducibility: not applicable. this is a packaging, installation, and product-boundary change rather than a report of broken current behavior. Review metrics: 3 noteworthy metrics.
Stored data model Root-cause cluster Members:
Proposal only: this assessment does not dispatch repair, suppress jobs, mutate sibling items, close, or merge anything. Merge readiness Overall follows the weaker of proof and patch quality, so missing proof can cap an otherwise strong patch. Rank-up moves:
Risk before merge
Maintainer options:
Next step before merge
Maintainer decision needed
Security Review findings
Review detailsBest possible solution: Split or land the work only after adding a tested Do we have a high-confidence way to reproduce the issue? Not applicable: this is a packaging, installation, and product-boundary change rather than a report of broken current behavior. Is this the best way to solve the issue? No, not in its current form: the lean-core direction is plausible, but removing shipped skills without doctor migration and accepted release trust proof is not the safest upgrade path. Full review comments:
Overall correctness: patch is incorrect AGENTS.md: found and applied where relevant. Codex review notes: model internal, reasoning high; reviewed against 4a9a556a3a14. Label changesLabel justifications:
Evidence reviewedSecurity concerns:
What I checked:
Likely related people:
What the crustacean ranks mean
Shiny media proof means a screenshot, video, or linked artifact directly shows the changed behavior. Runtime, network, CSP, and security claims still need visible diagnostics. How this review workflow works
Review history (39 earlier review cycles; latest 8 shown)
|
bed4e9b to
bddf59d
Compare
Dependency GuardThis PR changes dependency-related files. Maintainers should confirm these changes are intentional. Changed files:
Maintainer follow-up:
|
Dependency graph changes are blockedOpenClaw does not accept dependency graph changes through PRs unless a repository admin or security explicitly authorizes the current head SHA. Dependency updates are generated internally by maintainers so external PRs cannot change the resolved graph. Detected dependency graph changes:
Auto-scrub was not attempted because this PR changes package manifest dependency graph fields:
Dependency graph changes must be reviewed by security or handled by maintainers internally. Please remove lockfile changes manually if they are not needed. To remove lockfile changes, restore them from the target branch: git fetch origin
git checkout 'origin/main' -- 'pnpm-lock.yaml'
git commit -m 'chore: remove dependency lockfile change'
git pushIf this PR intentionally needs a dependency graph change, ask a repository admin or member of The action will approve the current head SHA ( |
bddf59d to
ee37653
Compare
|
@clawsweeper re-review |
|
🦞🧹 I asked ClawSweeper to review this item again. Re-review progress:
|
|
@clawsweeper re-review |
|
🦞🧹 I asked ClawSweeper to review this item again. Re-review progress:
|
|
@clawsweeper re-review |
|
🦞🧹 I asked ClawSweeper to review this item again. Re-review progress:
|
|
ClawSweeper status: review started. I am starting a fresh review of this pull request: refactor(skills): trim bundled starter set This is item 1/1 in the current shard. Shard 0/1. This placeholder means the worker is alive and reading the current context. I will edit this same comment with the actual review when the claws are done clicking. Crustacean status: shell secured, claws on keyboard, evidence pebbles being sorted. |
Summary
clawhub,diagram-maker,gifgrep,gog,healthcheck,mcporter,model-usage,node-connect,peekaboo,skill-creator,songsee,spotify-player,summarize, andweather@openclaw/sherpa-onnx-tts, register its trusted official catalog entry, andsupport bare-ID install resolution for ClawHub-only official plugins
use native
openclaw skillsdiscovery/install commands, and update affecteddocs, generated plugin inventory, packaging, and obsolete tests
The root
skills/directory and bundled-skill loading/configuration remain inplace. There are no system-prompt changes.
Removed from core:
1password,apple-notes,apple-reminders,bear-notes,blogwatcher,blucli,camsnap,coding-agent,eightctl,gemini,gh-issues,github,goplaces,himalaya,imsg,meme-maker,nano-pdf,node-inspect-debugger,notion,obsidian,openai-whisper,openai-whisper-api,openhue,oracle,ordercli,python-debugpy,sag,session-logs,sonoscli,spike,taskflow,taskflow-inbox-triage,things-mac,tmux,trello,video-frames, andxurl.Verification
.agents/skills/autoreview/scripts/autoreview --mode branch --base refs/remotes/local-split/plugin-owned-skillspnpm check:changed: runrun_55d56169081c, leasecbx_e72add0fd896