跳到主要内容
知仓学习社ZHICANG

openrouter-video-generator

Generate or declare an OpenRouter video asset for AwesomeWebpageMetaSkill using a parent-leased Provider Settings connection and configured non-secr…

读凭据联网严重 0 · 高危 6TokenRhythm/opensquilla

它会碰到什么

扫了多少2 个文本文件,19 KB
它会碰到什么读凭据联网
命中总数8 处
命中统计严重 0 · 高 6 · 中 1 · 低 1
逐条看命中(6 条严重或高危)
  • scripts/openrouter_video.py:164cred-envread
    lease_required = os.environ.get(META_CAPABILITY_LEASE_REQUIRED_ENV) == "1"
  • scripts/openrouter_video.py:166cred-envread
    provider = os.environ.get(META_CAPABILITY_PROVIDER_ENV, "").strip().lower()
  • scripts/openrouter_video.py:170cred-envread
    os.environ.get(META_CAPABILITY_API_KEY_ENV, "").strip(),
  • scripts/openrouter_video.py:171cred-envread
    os.environ.get(META_CAPABILITY_BASE_URL_ENV, "").strip().rstrip("/"),
  • scripts/openrouter_video.py:172cred-envread
    os.environ.get(META_CAPABILITY_PROXY_ENV, "").strip(),
  • scripts/openrouter_video.py:177cred-envread
    str(args.api_key.strip() or os.environ.get(api_key_env, "")),

这一栏是扫描器报的事实,不是结论。命中多不等于有毒(安全工具、规则库、示例脚本本来就会包含危险写法),命中少也不等于干净。它和你手上的凭据、文件、网络有什么关系,需要你自己看。

技能内容

OpenRouter Video Generator

Create a short browser-playable video asset for AwesomeWebpageMetaSkill.

This is an adapter around the configured OpenRouter video model, not a place to

choose providers or invent model ids.

Meta-Skill Entrypoint

Meta-skills should run this skill as skill_exec. The entrypoint is a

deterministic Python adapter around OpenRouter's async video endpoint. During a

MetaSkill run it receives a short-lived connection from ordinary Provider

Settings in the child process only; the credential, endpoint, and proxy never

enter with, argv, the plan, or persisted run data. It writes the MP4 under

the supplied output directory and prints either VIDEO_READY: or a failure

label. Do not spawn an LLM sub-agent just to generate video.

Contract

  • Use the code-owned OpenRouter capability candidate and the volatile provider

lease resolved from ordinary Provider Settings after explicit approval.

  • Use only awesome_webpage.openrouter.models.video_generation as the model.
  • Use only awesome_webpage.output_dir as the output root.
  • Save generated files under project/assets/video/.
  • Return a media manifest with local path, MIME type, duration if known,

provenance, and replacement notes.

OpenRouter Video API Contract (hard rule)

OpenRouter video models are exposed through an async job endpoint, not

the chat-completions endpoint. Hitting /chat/completions with a video

model id returns HTTP 500 and burns the full per-attempt budget. Do not

attempt it.

  • Submit: POST {base_url}/videos with JSON body

{"model": "<video_generation>", "prompt": "<text>", "duration": <int>}.

Optional fields: resolution, aspect_ratio, frame_images,

input_references, provider, callback_url. Do NOT send messages or

modalities — those are chat-only and will be rejected.

  • Response (immediate): `{"id": "...", "polling_url": "...",

"status": "pending"}`.

  • Poll: GET the polling_url with the same Authorization: Bearer ...

header every 8-15 seconds until status becomes one of

completed | failed | cancelled | expired. Cap the loop at ~5 minutes per

clip; treat anything beyond that as VIDEO_GENERATION_FAILED.

  • Download (only on completed): take the first URL from

unsigned_urls, GET it with the same bearer token, and save the body to

<output_dir>/project/assets/video/<slug>.mp4. Set MIME to video/mp4.

  • Terminal-failure statuses map to VIDEO_GENERATION_FAILED; include

the job id and a replacement-slot path so the page can render a clean

placeholder.

Typical successful job completes in 60-120 s for short clips; do not abort

before that window.

Failure Labels

Return one of these labels instead of silently skipping video:

  • VIDEO_CONFIG_NEEDED: model, API key, base URL, or output directory is

missing.

  • VIDEO_MODEL_UNSUPPORTED: the configured model cannot return a local

browser-playable asset in this environment.

  • VIDEO_GENERATION_FAILED: the provider call failed after a concrete attempt.

A missing/invalid required MetaSkill lease emits VIDEO_CONFIG_NEEDED and exits

78 before submit. Failures after a concrete submit stay an exit-0 degradation

so downstream packaging can bind a replacement slot without automatic replay.

When returning a failure label, also return a replacement slot such as

project/assets/video/replace-with-topic-intro.mp4 and enough prompt/context

for a later repair pass.

Output Requirements

  • Prefer .mp4 with video/mp4; .webm is acceptable when browser playable.
  • Keep clips short, usually 8-20 seconds.
  • Do not use remote embeds unless config explicitly allows them.
  • Do not hardcode OpenRouter model names, API keys, or output directories.

On success: VIDEO_READY manifest line (required)

After every successful download, end your reply with one single-line JSON

record per file so AwesomeWebpageMetaSkill can collect and bind the asset:

VIDEO_READY: {"local_path": "project/assets/video/<slug>.mp4", "mime": "video/mp4", "duration_s": <int_or_null>, "resolution": "<WxH_or_null>", "prompt_preview": "<first 80 chars>"}
  • One VIDEO_READY: line per video file. No trailing prose on that line.
  • local_path MUST be the relative path project/assets/video/.... Do NOT

emit an absolute path here.

  • On failure, emit one of VIDEO_CONFIG_NEEDED, VIDEO_MODEL_UNSUPPORTED, or

VIDEO_GENERATION_FAILED as a single-line label with the replacement-slot

path so the page can render a placeholder.

想直接用这个技能?

本站把开放许可(MIT / Apache 等)的技能按仓库打包整理到网盘,点一下转存到你自己的网盘,不用一个个从 GitHub 拉。许可未声明的技能只给原始仓库链接,不打包。

它属于哪个仓库

星标★ 7,018
本站分层T1
该仓技能数68
原文件路径src/opensquilla/skills/bundled/openrouter-video-generator/SKILL.md

同一个仓库里的其他技能

看这个仓库的全部 68 个技能