Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx skills add meitu/meitu-skills --skill image-element-removegit clone --depth 1 https://github.com/meitu/meitu-skillsWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/skills/meitu/meitu-skills/image-element-remove)<a href="https://agentmods.dev/skills/meitu/meitu-skills/image-element-remove"><img src="https://agentmods.dev/badge/skills/meitu/meitu-skills/image-element-remove/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/skills/meitu/meitu-skills/image-element-remove"><img src="https://agentmods.dev/badge/skills/meitu/meitu-skills/image-element-remove.svg" alt="Reviewed on agentmods" width="80" height="20"></a>- NVIDIA SkillSpector warn
SkillSpector: 6 findings, up to high
These are SkillSpector’s own severities. On a checked sample its high-severity flags on skills were ~96% false positives — a documented command, a public API, a “never do X” rule — so we show them as a caution to read, not a verdict. Why →
- high Privilege Escalation · line 5 Code accesses credential files (SSH keys, AWS credentials, etc.). This could indicate credential theft attempts.Fix: Remove references to credential paths. Use environment variables or secrets managers. For docs, use placeholder paths (e.g., /path/to/config). Never load .env or token files in production code paths.
- high Privilege Escalation · line 7 Code accesses credential files (SSH keys, AWS credentials, etc.). This could indicate credential theft attempts.Fix: Remove references to credential paths. Use environment variables or secrets managers. For docs, use placeholder paths (e.g., /path/to/config). Never load .env or token files in production code paths.
- high Privilege Escalation · line 14 Code accesses credential files (SSH keys, AWS credentials, etc.). This could indicate credential theft attempts.Fix: Remove references to credential paths. Use environment variables or secrets managers. For docs, use placeholder paths (e.g., /path/to/config). Never load .env or token files in production code paths.
- high Privilege Escalation · line 16 Code accesses credential files (SSH keys, AWS credentials, etc.). This could indicate credential theft attempts.Fix: Remove references to credential paths. Use environment variables or secrets managers. For docs, use placeholder paths (e.g., /path/to/config). Never load .env or token files in production code paths.
- high Privilege Escalation · line 22 Code accesses credential files (SSH keys, AWS credentials, etc.). This could indicate credential theft attempts.Fix: Remove references to credential paths. Use environment variables or secrets managers. For docs, use placeholder paths (e.g., /path/to/config). Never load .env or token files in production code paths.
- medium Rogue Agent · line 26 Skill establishes unauthorized persistence across sessions via cron jobs, startup scripts, or state files. Session persistence allows an attacker to maintain access beyond the current interaction.Fix: Remove any persistence mechanisms (cron jobs, startup scripts, state files). Skills should not maintain state across sessions without explicit user consent.
What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00090 | $0.02299 |
| Opus 5 | $0.00045 | $0.01149 |
| Sonnet 5 | $0.00018 | $0.00460 |
| Haiku 4.5 | $0.00009 | $0.00230 |
Grade A, and why
image-element-remove scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 10d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 168 lines — stays where its author put it; the contents beside it link to each section on GitHub.
图片消除(image-element-remove)
Overview
对已有图片做元素消除(去水印/去文字/去局部物体),覆盖 4 类场景:通用水印消除(一键去水印含半透明)、文档场景半透明水印、局部物体/元素/指定文字消除、降级兜底链。路由铁律:用户指定具体文字内容时必须使用 praline_pro(路径 C),禁止走通用水印/全部文字路径(否则会清除全部文字)。
执行前应让用户清楚知道:本 Skill 会读取 Meitu 凭证、调用本地 meitu CLI、将用户提供的图片与生成的消除指令发送到 Meitu OpenAPI 处理,并把结果写入 ./output/ 或 $VISUAL/output/image-element-remove/。若请求涉及去水印、去 Logo、去认证/署名信息或类似来源标识,应提醒用户确认自己具备合法编辑权限。
API Mapping
- 通用水印/全部文字消除:通用消除路径。
- 文档场景半透明水印:文档水印路径。
- 局部物体或指定文字消除:优先
praline_pro,失败依次降级为praline_lite、mint_edit。
Dependencies
- meitu-cli:
>=2.0.6(npm install -g meitu-cli@latest) - 凭证:CONFIG AKSK →
meitu tools update;EXEC AKSK → 实际执行(见根CONFIG.md) - 环境变量:
MEITU_OPENAPI_TOOL_TASK_MODE=command
路径别名:
$VISUAL={OPENCLAW_HOME}/workspace/visual/
Core Workflow
Preflight → Execute → Deliver
Preflight
meitu --version≥ 2.0.6(否则npm install -g meitu-cli@latest)- 确认已跑过
meitu tools update(用 CONFIG AKSK) - 当前 AKSK = EXEC,且
MEITU_OPENAPI_TOOL_TASK_MODE=command - 解析 output_dir:openclaw.yaml →
./output/|else →$VISUAL/output/image-element-remove/;mkdir -p
Execute
触发信号 / 路由规则
核心判断维度:前置判断(指定文字?) + 消除内容类型。
决策顺序:
- 前置判断(路由铁律):用户引用/描述了特定文字内容?
- ✅ 是 → 强制使用
praline_pro(禁止走通用消除路径) - ❌ 否 → 继续分类
- ✅ 是 → 强制使用
- 按消除内容分支:
- 路径 A:去水印 / 去全部文字(全量词) → 通用消除路径
- 路径 B:明确文档场景半透明水印 → 文档水印路径
- 路径 C:局部物体/指定文字 →
praline_pro→ 降级链
| 场景 | 判定关键词 | 路由 |
|---|---|---|
| 指定具体文字内容(铁律) | 去掉'xxx'、去除文字'xxx' | praline_pro |
| 通用水印 | 去水印、去掉水印、去半透明水印 | 通用消除路径,target=watermark |
| 全部文字(含全量词) | 去全部文字、所有文字、一键去文字 | 通用消除路径,target=text |
| 文档场景半透明水印(用户原话明确) | 文档水印、扫描件水印、小说水印 | 文档水印路径 |
| 局部物体/元素 | 去路人、去 Logo、消除杂物、去角标 | praline_pro → 降级链 |
| 意图模糊("去掉字") | 未说全部也未指定具体内容 | 轻确认 |
显式约束消除原则:praline_pro、praline_lite 和 mint_edit 的消除 prompt 必须使用四段式模板(SCOPE + PRESERVE + REFLOW + NEGATIVE),显式锁定剩余元素 12 项视觉属性,防止模型顺手改动非目标元素。
参数定义
通用参数:
| 参数 | 类型 | 必填 | 说明 |
|---|---|---|---|
image_url |
STRING | 是 | 图片地址。缺失 → 提示"请提供需要处理的图片" |
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 10d ago First seen · 168 lines · 90 tokens per session scan A 807a371d2ae9
image-element-remove is a skill published in the GitHub repository meitu/meitu-skills (32 stars, last pushed 13d ago), licensed MIT. It adds 90 tokens to every session and 2,299 once invoked, about $0.0005 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other skills, from other repositories
webgl-holographic-foil
A self-contained WebGL2 hero: thin-film interference over a crushed-foil surface whose palette shifts with the viewing angle; move the cursor to tilt the film.
general-video
Author or edit a custom HyperFrames composition when no specialized workflow fits, or when BRIEF.md sets flow: companion. Use for longer or multi-scene pieces, brand and sizzle reels, montages, static loops, static title cards, footage remixes, and freeform builds. Use motion-graphics instead for a short unnarrated…
html-ppt-hermes-cyber-terminal
OpenDesign + BYOK: choosing and wiring your own model, hands-on — cost, quality, and the routing decision. Built as a decision-grade AI literacy deck for engineers, IT, applied-AI teams.
html-ppt-taste-brutalist
16:9 HTML deck in tactical-telemetry / CRT-terminal taste. Deactivated-CRT charcoal slides, white-phosphor monospace, hazard-red accent, scanline overlay, ASCII syntax, density over decoration. Distilled from Leonxlnx/taste-skill brutalist-skill (Tactical Telemetry mode).
diagnostic-stem-delivery
Audio production with diagnostic analysis, timecode parsing from documents, and verified export workflow.
chengfeng-check-updates
An environment manager for a video-editing system. It checks whether its skills and runtime—the software needed to run them—are installed and compatible.