Token导航 LogoToken导航TokenDH.com
研究检索敏感数据clawhub未标认证来源可访问clear审计通过

systems-architect系统架构师

Agent Skill

systems-architect 用于查找、检索和筛选相关信息,适合在 OpenClaw 中需要根据关键词、任务场景或来源线索快速定位候选结果时使用。可结合来源仓库、安装命令和原始 README 继续核验具体用法。安装前建议确认权限范围、维护状态,以及是否会触发联网、命令执行或文件读写。

总安装

34,617

周安装

1,487

GitHub Stars

2

下载量

12,134
OpenClaw

安装说明

本站只整理中文说明和来源信息,不托管安装包,也不代用户安装。

GitHub

来源数

2

许可证

MIT-0

最后核验

2026-05-01

来源状态

来源可访问

安装方式

通过对话安装

复制提示词发给支持本地命令或 Skills 的 AI 助手,先确认命令和权限,再让它执行。

请帮我安装这个 Agent Skill:systems-architect(系统架构师)
来源仓库:https://github.com/ivangdavila/systems-architect
安装命令:
openclaw skills install systems-architect
安装前请先检查当前环境是否支持对应 CLI,并向我确认将要执行的命令、安装目录、联网范围和文件读写权限;确认后再执行。

命令行安装

复制命令到本机终端执行。该命令会通过 OpenClaw 从第三方来源获取 Skill;本站只展示命令,不托管安装包,也不自动执行。

ClawHubOpenClaw
openclaw skills install systems-architect

简介

设计集成、可靠且安全的云基础设施与网络系统。

  • 适用于 OpenClaw 中需要构建或优化云架构、网络和部署流程的场景。
  • 通过关键词或任务目标触发,结合来源仓库和 README 了解具体实现方式。
  • 安装命令为 openclaw skills install systems-architect,需确认权限与维护状态。
  • 注意可能涉及联网、配置变更或资源操作,建议提前评估影响范围。

SKILL.md

name
Systems Architect
description
Design infrastructure, networks, and cloud systems with integration, reliability, and security patterns.
metadata
{"clawdbot":{"emoji":"🌐","os":["linux","darwin","win32"]}}

Systems Architecture Rules

Infrastructure Design

  • Design for failure at every layer — hardware fails, networks partition, regions go down
  • Redundancy costs money, downtime costs more — calculate acceptable risk
  • Prefer managed services for undifferentiated work — run less, build more
  • Infrastructure as code from day one — manual changes drift and break
  • Immutable infrastructure beats patching — replace, don't repair

Cloud Architecture

  • Multi-AZ minimum, multi-region for critical systems — availability zones fail together sometimes
  • Right-size first, auto-scale second — baseline must be correct
  • Reserved capacity for steady load, spot/preemptible for bursts — cost optimization requires planning
  • Egress costs add up — keep traffic within regions when possible
  • Cloud vendor lock-in is real — abstract where escape matters, accept where it doesn't

Networking

  • Private subnets for workloads, public only for load balancers — minimize attack surface
  • VPC peering and transit gateways for multi-account — plan topology before scaling
  • DNS for service discovery — hardcoded IPs break migrations
  • Zero trust: authenticate and encrypt internal traffic — perimeter security isn't enough
  • Network segmentation limits blast radius — flat networks let attackers roam

Integration Patterns

  • APIs for synchronous, queues for asynchronous — match pattern to requirements
  • Event-driven for loose coupling — producers don't know consumers
  • Service mesh for complex microservices — observability and security at network layer
  • Rate limiting and backpressure protect systems — don't let slow consumers crash fast producers
  • Dead letter queues for failed messages — don't lose data, process later

Reliability

  • Define SLOs before building — what does "up" mean for this system?
  • Error budgets allow controlled risk — 99.9% means 8 hours downtime per year is acceptable
  • Blast radius reduction: cell-based architecture — limit how many users one failure affects
  • Chaos engineering in staging first — break things intentionally before production breaks accidentally
  • Runbooks for every alert — 3 AM isn't debugging time

Disaster Recovery

  • RTO (recovery time) and RPO (data loss) are business decisions — architect for the requirement
  • Backups aren't recovery until tested — restore regularly
  • Hot/warm/cold standby each have trade-offs — cost vs speed of recovery
  • Cross-region replication for critical data — single region is single point of failure
  • DR drills reveal real problems — plan meets reality

Security

  • Defense in depth: multiple barriers — one layer will fail
  • Least privilege for services too — not just users
  • Secrets management centralized — no secrets in code, config files, or environment variables in images
  • Audit logging for compliance and forensics — you'll need it after a breach
  • Patch aggressively — known vulnerabilities are actively exploited

Monitoring and Observability

  • Metrics, logs, and traces together — each tells part of the story
  • Alerting on symptoms, not causes — users down matters, CPU high might not
  • Dashboards for each service with golden signals — latency, traffic, errors, saturation
  • Distributed tracing across services — follow requests end to end
  • Log aggregation with retention policy — balance cost and forensic needs

Capacity Planning

  • Measure current baseline before projecting — can't scale what you don't measure
  • Load test to find breaking points — theory differs from reality
  • Capacity leads demand — scaling takes time, be ahead
  • Cost modeling for growth scenarios — 10x users is rarely 10x cost
  • Review quarterly at minimum — patterns change

Migration and Evolution

  • Strangler fig pattern for legacy replacement — route traffic gradually
  • Blue-green or canary for infrastructure changes — test in production safely
  • Database migrations are hardest — plan data migration separately
  • Rollback plans before rollout — assume failure, prepare for it
  • Communicate maintenance windows — surprises damage trust

适合场景

01

OpenClaw 用户查找和安装 Skill 时

02

用户想查找某类 Agent Skill 时

03

需要根据任务场景推荐可安装能力包时

04

需要对比不同来源的安装命令和来源信息时

能力概览

能力 1

按任务关键词查找相关 Skills

能力 2

展示可复制的安装命令

能力 3

保留来源站点、仓库和原始说明,方便继续核验

能力 4

补充不同宿主或平台的使用分布数据

能力 5

展示第三方安全扫描或审计结果

安装后应在对应宿主中按原始 README 的触发条件使用;具体调用方式请以来源页面和 README 为准。

平台分布

OpenClaw

95.03%
按下载量换算11,531

安全审计

VirusTotal

通过

ClawScan

通过

Static analysis

未展示

权限和风险

敏感数据

该 Skill 可能接触密钥、Token、环境变量或敏感配置,应进入高风险复核队列,默认不自动发布。

安装前确认

本站仅展示第三方公开信息,不托管安装包,不提供自动安装或运行环境。安装前应自行审查源码、依赖和命令行为。当前只有一个来源,正式发布前建议补源仓库或其他目录站核验。

来源信息

继续浏览同类 Skills