by Player-YN
Paw Work - selection-first web agent for Chrome: select on the live page, describe the outcome, take away an editable office file. BYOK, sandboxed, no server.
# Add to your Claude Code skills
git clone https://github.com/Player-YN/PawWork_ZhuaZhuaGuides for using ai agents skills like PawWork_ZhuaZhua.
Last scanned: 9/2/2026
{
"issues": [
{
"type": "npm-audit",
"message": "@univerjs-pro/collaboration: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs-pro/collaboration-client: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs-pro/collaboration-client-ui: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs-pro/docs-exchange-client: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs-pro/docs-print: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs-pro/edit-history-loader: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs-pro/edit-history-viewer: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs-pro/engine-chart: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs-pro/engine-formula: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs-pro/exchange-client: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs-pro/license: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs-pro/sheets-chart: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs-pro/sheets-chart-ui: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs-pro/sheets-exchange-client: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs-pro/sheets-outline: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs-pro/sheets-outline-ui: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs-pro/sheets-pivot: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs-pro/sheets-pivot-ui: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs-pro/sheets-print: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs-pro/sheets-shape: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs-pro/sheets-shape-ui: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs-pro/sheets-sparkline: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs-pro/sheets-sparkline-ui: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs-pro/thread-comment-datasource: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/core: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/data-validation: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/docs: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/docs-drawing: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/docs-drawing-ui: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/docs-hyper-link: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/docs-hyper-link-ui: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/docs-thread-comment-ui: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/docs-ui: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/drawing: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/drawing-ui: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/engine-formula: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/engine-render: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/find-replace: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/network: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/preset-docs-advanced: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/preset-docs-collaboration: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/preset-docs-core: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/preset-docs-drawing: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/preset-docs-hyper-link: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/preset-docs-node-core: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/preset-docs-thread-comment: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/preset-sheets-advanced: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/preset-sheets-collaboration: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/preset-sheets-conditional-formatting: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/preset-sheets-core: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/preset-sheets-data-validation: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/preset-sheets-drawing: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/preset-sheets-filter: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/preset-sheets-find-replace: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/preset-sheets-hyper-link: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/preset-sheets-node-core: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/preset-sheets-note: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/preset-sheets-sort: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/preset-sheets-table: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/preset-sheets-thread-comment: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/presets: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/rpc: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/rpc-node: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/sheets: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/sheets-conditional-formatting: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/sheets-conditional-formatting-ui: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/sheets-data-validation: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/sheets-data-validation-ui: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/sheets-drawing: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/sheets-drawing-ui: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/sheets-filter: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/sheets-filter-ui: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/sheets-find-replace: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/sheets-formula: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/sheets-formula-ui: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/sheets-graphics: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/sheets-hyper-link: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/sheets-hyper-link-ui: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/sheets-note: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/sheets-note-ui: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/sheets-numfmt: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/sheets-numfmt-ui: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/sheets-sort: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/sheets-sort-ui: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/sheets-table: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/sheets-table-ui: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/sheets-thread-comment: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/sheets-thread-comment-ui: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/sheets-ui: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/telemetry: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/thread-comment: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/thread-comment-ui: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "@univerjs/ui: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "image-size: image-size: ICNS parser allows denial of service through an infinite loop",
"severity": "high"
},
{
"type": "npm-audit",
"message": "nanoid: nanoid: non-secure generators can loop indefinitely with negative size",
"severity": "high"
},
{
"type": "npm-audit",
"message": "pptxgenjs: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "xlsx: Prototype Pollution in sheetJS",
"severity": "high"
},
{
"file": "src/agent/vnext/skills/html-site/SKILL.md",
"line": 45,
"type": "prompt-injection",
"message": "Possible concealment directive: \"Do not tell the user\"",
"severity": "medium"
}
],
"status": "WARNING",
"scannedAt": "2026-09-02T08:25:45.415Z",
"npmAuditRan": true,
"pipAuditRan": true,
"promptInjectionRan": true
}See how PawWork_ZhuaZhua compares with popular alternatives.
PawWork_ZhuaZhua is an open-source ai agents skill for AI coding assistants such as Claude Code, Codex CLI, and ChatGPT, built by Player-YN. Paw Work - selection-first web agent for Chrome: select on the live page, describe the outcome, take away an editable office file. BYOK, sandboxed, no server. It has 2,546 GitHub stars.
PawWork_ZhuaZhua returned warnings in SkillsLLM's automated security scan. It has no critical vulnerabilities, but review the flagged issues in the Security Report section before adding it to your workflow.
Clone the repository with "git clone https://github.com/Player-YN/PawWork_ZhuaZhua" and add it to your Claude Code skills directory (see the Installation section above).
PawWork_ZhuaZhua is primarily written in JavaScript. It is open-source under Player-YN on GitHub, so you can review or fork the full source.
Yes. SkillsLLM lists many other AI Agents skills you can browse and compare side by side. Open the AI Agents category from the badge at the top of this page, or use the Related Skills and comparison links further down to weigh PawWork_ZhuaZhua against similar tools.
No comments yet. Be the first to share your thoughts!
Requires a passing catalog security scan. Resolve the flagged issues and resubmit to enable featuring.
⚠️ Third-Party Software Notice
This skill is third-party open-source software developed and hosted independently on GitHub. SkillsLLM is an informational directory and does not control or maintain the underlying repository.
Any security checks, ratings, or warnings displayed by SkillsLLM are automated and limited in scope. They do not constitute a security certification or guarantee that the software is safe, error-free, or free from malicious code, vulnerabilities, compromised dependencies, or prompt-injection risks.
Review the source code, permissions, dependencies, and configuration before installing or running any third-party skill. Use is at your own risk. To the maximum extent permitted by applicable law, SkillsLLM is not liable for losses arising from third-party software.
English · 中文
Treat the already-logged-in Chrome as a programmable computer. 爪爪 is the agent on that machine.
sidepanel → service worker → offscreen agent · tools: action · run+sys · sheet / doc / web
What you get · Run it · Limits · Use cases · Mechanism · Next
爪爪 · 完全解放版 (PawWork_ZhuaZhua) is a Chrome MV3 unpacked extension. Not a selection widget. Not a Chrome Web Store app.
An unpacked side-panel agent that can operate the current tab, run guest JS against the browser (sys inside run), and keep sheet / Univer doc / site HTML in the session.
Anything a Tampermonkey userscript could do is in scope. There is no userscript store. One packaged playbook ships: page-restyle.
You should see a side-panel agent named 爪爪 · 完全解放版. There is no Chrome Web Store listing.
extension/ folderchrome://extensions → Developer mode → Load unpacked → select that folder (manifest.json is at its root)pagewand_providers) → send a task on a normal http(s) pageAfter you edit files in the load folder, click 重新加载 on the extension card. No daily npm.
These change whether you load it, and what the first task can touch.
Need Chrome 135+. Chrome 138+: extension details → Allow User Scripts if you need sys.eval / page fetch. Close F12 on the target tab before CDP (CDP_BUSY). Restricted pages (chrome://, Web Store) return NEED_PAGE.
| If you wanted | What exists |
|---|---|
| CWS install | No. Unpacked only. |
| Hosted model | No. BYOK. |
| A Tampermonkey catalog | No. Skill: page-restyle. |
chrome:// / Web Store pages |
NEED_PAGE. |
Tried and plausible — not a benchmark list, not a store.
page-restyle, or run + sys.eval)sys.fetch as page → sheet)action snapshot / fill_form)sys.download or page fetch)navigateSide panel → service worker → offscreen SessionWorkspaceService → AI SDK ToolLoopAgent.
| You call | It does |
|---|---|
action |
Live tab. snapshot, then mutate with that generation’s ref + rev |
run |
Sandbox JS. Guest sys: tabs, eval, fetch, cdp, download, screenshot |
sheet / doc / web |
Univer table, Univer document, data-paw-kind=site |
inspect / acquire / clarify |
Read the session, bring public web in, pause for a question or plan |
sys is not a model tool. Login / cookies / captcha: sys.fetch({ as: "page" }) inside run.
Architecture and tool contracts: AGENTS.md. 中文首页:README.zh-CN.md.
node --test tests/runtime-regression.test.mjs
MIT.