DuanYun — security grade SAFE, quality 65/100

Security audit verdict: SAFE · quality 65/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by xiaojilele-glitch · Codex Skill · ★ 262

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is DuanYun safe to install? View the security audit →

About DuanYun

A Simple and Universal Product Rehearsal Engine, Speccing Anything. 简洁通用的产品推演引擎,推演万物。 TRAE Skill Challenge / Community Showcase Project · formerly known as WhyBuddy (renamed 2026-06) Progress note: The engineering app currently trails the SlideRule Skill. For the complete product rehearsal experience, use the SlideRule Skill first; the engineered project is still moving forward. English · 简体中文 <img alt="stars" src="https://img.shields.i

agent-frameworkai-agentsai-assistantautonomous-agentshermes-agentllmmulti-agentopenclawpixel-artspec-driven

Quick Facts

Stars262
Forks39
LanguageTypeScript
CategoryCodex Skill
LicenseMIT
Quality Score64.6144894187273/100
Open Issues2
Last Updated2026-05-27
Created2026-03-25
Platformsnode
Est. Tokens~4492k

Compatible Skills

These tools work well together with DuanYun for enhanced workflows:

  • cube-pets-office — semantic(1.00)+rare_topics+same_lang+similar_pop+shared_platform (70%)
  • agentos — semantic(0.22)+complementary+same_lang+similar_pop+shared_platform (58%)
  • pilot-shell — semantic(0.20)+complementary+same_lang+similar_pop+shared_platform (57%)
  • openpets — semantic(0.18)+complementary+rare_topics+same_lang+similar_pop+shared_platform (56%)

DuanYun alternative? Top 6 similar tools

Looking for a DuanYun alternative? If you're comparing DuanYun with other codex skill tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • cube-pets-office by opencroc · ⭐ 240

    AI Agent OS with visible workflow, real execution, and a 3D office shell. From one sentence to full task lifec

  • openlegion by openlegion-ai · ⭐ 116

    Secure autonomous AI agent framework and platform. Build AI teams by describing what you want. Orchestrate age

  • Network-AI by Jovancoding · ⭐ 76

    Traffic light for AI Agents and TypeScript/Node multi-agent orchestrator with shared state, guardrails, and ad

  • sre by SmythOS · ⭐ 1.3k

    The SmythOS Runtime Environment (SRE) is an open-source, cloud-native runtime for agentic AI. Secure, modular,

  • OpenOffice by longyangxi · ⭐ 255

    A visible workspace for AI agents to collaborate as a single team.

  • bit-office by longyangxi · ⭐ 145

    Pixel office for AI agents and multi-agent collaboration

More Codex Skill Tools

Explore other popular codex skill tools:

View all Codex Skill tools →

Popular TypeScript Agent Tools

Frequently Asked Questions

What is DuanYun?

DuanYun is AI Agent OS with visible workflow, real execution, and a 3D office shell. From one sentence to full task lifecycle — plan, run, review, replay. It is categorized as a Codex Skill with 262 GitHub stars.

What programming language is DuanYun written in?

DuanYun is primarily written in TypeScript. It covers topics such as agent-framework, ai-agents, ai-assistant.

How do I install or use DuanYun?

You can find installation instructions and usage details in the DuanYun GitHub repository at github.com/xiaojilele-glitch/DuanYun. The project has 262 stars and 39 forks, indicating an active community.

What license does DuanYun use?

DuanYun is released under the MIT license, making it free to use and modify according to the license terms.

What are the best alternatives to DuanYun?

The top alternatives to DuanYun on Agent Skills Hub include cube-pets-office, openlegion, Network-AI. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse Codex Skill tools