[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"article-openclaw-3-28-approval-gates-updates-zh":3,"tags-openclaw-3-28-approval-gates-updates-zh":35,"related-lang-openclaw-3-28-approval-gates-updates-zh":51,"related-posts-openclaw-3-28-approval-gates-updates-zh":55,"series-ai-agent-e34dfc4e-f149-4d39-9cab-da61258554ae":92},{"id":4,"title":5,"content":6,"summary":7,"source":8,"source_url":9,"author":10,"image_url":11,"keywords":12,"language":23,"translated_content":10,"views":24,"is_premium":25,"created_at":26,"updated_at":26,"cover_image":11,"published_at":27,"rewrite_status":28,"rewrite_error":10,"rewritten_from_id":29,"slug":30,"category":31,"related_article_id":32,"status":33,"google_indexed_at":34,"x_posted_at":10,"tweet_text":10,"title_rewritten_at":10,"title_original":10,"key_takeaways":10,"topic_cluster_id":10,"embedding":10,"is_canonical_seed":25},"e34dfc4e-f149-4d39-9cab-da61258554ae","OpenClaw 3.28 加入審批閘門","\u003Cp>\u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fopenclaw\u002Fopenclaw\" target=\"_blank\" rel=\"noopener\">OpenClaw\u003C\u002Fa> 3.28 來了。這版只花 4 天，就推了 100+ 項變更。最有感的不是新模型，而是「先問再做」的審批閘門。\u003C\u002Fp>\u003Cp>講白了，這種功能平常很低調。可一旦代理開始幫你寫檔、打 API、動資料，少一個確認步驟，就可能多一個事故。\u003C\u002Fp>\u003Cp>這次更新還加了 \u003Ca href=\"https:\u002F\u002Fx.ai\u002Fgrok\" target=\"_blank\" rel=\"noopener\">Grok\u003C\u002Fa> 搜尋、\u003Ca href=\"https:\u002F\u002Fwww.minimax.io\u002F\" target=\"_blank\" rel=\"noopener\">MiniMax\u003C\u002Fa> 圖像工具，還把 Qwen 驗證導到 \u003Ca href=\"https:\u002F\u002Fwww.modelscope.cn\u002Fstudio\" target=\"_blank\" rel=\"noopener\">Model Studio\u003C\u002Fa>。如果你把 \u003Ca href=\"\u002Fnews\u002Fopenclaw-command-guide-terminal-workflow-zh\">Open\u003C\u002Fa>Claw 當成聊天式工作台，3.28 重點不是炫技，是少踩雷。\u003C\u002Fp>\u003Ch2>3.28 到底改了什麼\u003C\u002Fh2>\u003Cp>這版的重點，不是單一功能，而是整體可用性變高了。Grok 搜尋變成內建選項，Qwen 登入流程改到 Model Studio，MiniMax 也支援圖像生成和 image-to-image 編輯。\u003C\u002Fp>\n\u003Cfigure class=\"my-6\">\u003Cimg src=\"https:\u002F\u002Fxxdpdyhzhpamafnrdkyq.supabase.co\u002Fstorage\u002Fv1\u002Fobject\u002Fpublic\u002Fcovers\u002Finline-1775057477157-82ln.png\" alt=\"OpenClaw 3.28 加入審批閘門\" class=\"rounded-xl w-full\" loading=\"lazy\" \u002F>\u003C\u002Ffigure>\n\u003Cp>這對開發者很實際。因為你通常不想在插件、模型、搜尋服務之間一直切來切去。工具越多，設定越碎，出錯點也越多。\u003C\u002Fp>\u003Cp>OpenClaw 這次也補了不少底層整理。像是新的 config schema 指令、舊設定鍵的驗證處理、以及 Google、Mistral、Open\u003Ca href=\"\u002Fnews\u002Fspec-driven-ai-turns-mcp-into-workflow-engine-zh\">AI\u003C\u002Fa>、Anthropic 等 provider 的修正。這些都不花俏，但很救命。\u003C\u002Fp>\u003Cul>\u003Cli>4 天內推出 100+ 項變更\u003C\u002Fli>\u003Cli>Grok 搜尋變成內建路徑\u003C\u002Fli>\u003Cli>MiniMax 支援圖像生成與編修\u003C\u002Fli>\u003Cli>Qwen 驗證改走 Model Studio\u003C\u002Fli>\u003Cli>openclaw.json 可直接輸出 JSON Schema\u003C\u002Fli>\u003C\u002Ful>\u003Cp>我特別喜歡它對舊設定的態度。以前很多工具會偷偷幫你轉設定。看起來貼心，其實很容易埋雷。現在是直接驗證失敗，雖然煩，但至少誠實。\u003C\u002Fp>\u003Cp>它也整理了 CLI backend 的載入方式。像 Claude CLI、Codex CLI、Gemini CLI，都更往插件層收斂。這樣核心 runtime 不會塞滿各家規則，後面要擴充也比較乾淨。\u003C\u002Fp>\u003Ch2>審批閘門才是主角\u003C\u002Fh2>\u003Cp>真正值得講的，是新的 async \u003Ccode>requireApproval\u003C\u002Fcode> hook。它掛在 \u003Ccode>before_tool_call\u003C\u002Fcode>，可以先暫停工具執行，再透過 Telegram、Discord、命令列提示，或特定頻道的 \u003Ccode>\u002Fapprove\u003C\u002Fcode> 指令來等人確認。\u003C\u002Fp>\u003Cp>這件事很重要。因為 a\u003Ca href=\"\u002Fnews\u002Famazon-bedrock-agents-multi-agent-workflows-zh\">gent\u003C\u002Fa> 真正危險的地方，不是聊天，而是動作。寫檔、發網路請求、碰 token、改資料，這些都不是「幫忙」而已。\u003C\u002Fp>\u003Cblockquote>“We need to build systems that are safe by default and secure by design.” — Sundar Pichai\u003C\u002Fblockquote>\u003Cp>這句話雖然是老梗，但放在這版很準。OpenClaw 3.28 在做的事，就是把審批變成工作流的一部分，而不是事後補洞。\u003C\u002Fp>\u003Cp>這也呼應現在 agent 工具的現實。只要有插件能執行動作，惡意技能就有機會偷資料、讀私鑰、摸記憶檔。OpenClaw 現在也把使用者導向 \u003Ca href=\"https:\u002F\u002Fclawhub.ai\u002Fspclaudehome\u002Fskill-vetter\" target=\"_blank\" rel=\"noopener\">Skill Vetter\u003C\u002Fa> 這類檢查工具。\u003C\u002Fp>\u003Cp>說真的，這不是過度緊張。官方 release notes 直接提到，某些惡意技能會偽裝成一般工具，然後偷偷掃本機資料。你如果真的在跑高權限 agent，審批閘門就是那個不能省的保險絲。\u003C\u002Fp>\u003Ch2>和舊版比，差在哪\u003C\u002Fh2>\u003Cp>跟 3.28 之前比，這版把 provider 層的摩擦壓低不少，也把高風險動作的控制做得更明確。數字和細節，比宣傳詞有說服力。\u003C\u002Fp>\n\u003Cfigure class=\"my-6\">\u003Cimg src=\"https:\u002F\u002Fxxdpdyhzhpamafnrdkyq.supabase.co\u002Fstorage\u002Fv1\u002Fobject\u002Fpublic\u002Fcovers\u002Finline-1775057512685-kkiy.png\" alt=\"OpenClaw 3.28 加入審批閘門\" class=\"rounded-xl w-full\" loading=\"lazy\" \u002F>\u003C\u002Ffigure>\n\u003Cp>例如新的審批 hook 是非同步的。這代表 agent 可以先停住，等人回覆，再繼續跑。這跟 UI 上塞一個 yes\u002Fno 視窗，根本不是同一種控制層級。\u003C\u002Fp>\u003Cp>再看幾個實際差異：\u003C\u002Fp>\u003Cul>\u003Cli>以前 Grok 搜尋要手動切插件，現在直接內建\u003C\u002Fli>\u003Cli>以前 Qwen 驗證走舊 portal，現在改成 Model Studio\u003C\u002Fli>\u003Cli>以前圖像工具較窄，現在 MiniMax image-01 可做生成與編修\u003C\u002Fli>\u003Cli>以前高風險動作可能直接跑完，現在可先等審批\u003C\u002Fli>\u003Cli>以前舊設定鍵會被自動轉換，現在會直接驗證失敗\u003C\u002Fli>\u003C\u002Ful>\u003Cp>這版也把 OpenAI 和 Codex 預設改成 \u003Ccode>apply_patch\u003C\u002Fcode>，sandbox policy 也對齊 write permissions。這種改法很無聊，但很重要。因為它能減少 agent 在不該動手時亂動手。\u003C\u002Fp>\u003Cp>另外，Telegram、Discord、WhatsApp、Matrix、Slack、Microsoft Teams 的訊息處理也修了不少。這些看起來像小修小補，但它們會影響 thread、回覆路由、空訊息 crash，還有訊息迴圈。\u003C\u002Fp>\u003Cp>你可能會想問，這些修正值不值得講。我的答案是值得。因為 agent 產品不是只看模型多強，而是看它能不能穩穩跑 30 天。\u003C\u002Fp>\u003Ch2>數據和競品怎麼看\u003C\u002Fh2>\u003Cp>如果把 OpenClaw 3.28 放到整個 agent 工具市場看，它走的是「控制優先」路線。這和只強調模型能力的產品，很容易拉開差距。\u003C\u002Fp>\u003Cp>像 \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fanthropics\u002Fclaude-code\" target=\"_blank\" rel=\"noopener\">Claude Code\u003C\u002Fa> 比較偏向開發者工作流。\u003Ca href=\"https:\u002F\u002Fopenai.com\u002Fcodex\" target=\"_blank\" rel=\"noopener\">Codex\u003C\u002Fa> 則是把程式生成和執行體驗做得很順。OpenClaw 的差異在於，它把多通道、插件、審批、provider 路由放在同一套框架裡。\u003C\u002Fp>\u003Cp>這種架構的好處是彈性高。壞處也很明顯，就是複雜度高。所以 3.28 這種修補版，價值反而不小。它是在替後面更大的功能堆疊清地板。\u003C\u002Fp>\u003Cul>\u003Cli>OpenClaw 3.28：4 天、100+ 變更、加入審批閘門\u003C\u002Fli>\u003Cli>Claude Code：偏開發者 CLI 工作流\u003C\u002Fli>\u003Cli>OpenAI Codex：偏程式生成與執行整合\u003C\u002Fli>\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.anthropic.com\u002Fclaude\" target=\"_blank\" rel=\"noopener\">Anthropic Claude\u003C\u002Fa>：模型能力強，但工具層仍要自己控管\u003C\u002Fli>\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.google.com\u002Fgemini\" target=\"_blank\" rel=\"noopener\">Gemini\u003C\u002Fa>：多模態整合強，適合和外部工具串接\u003C\u002Fli>\u003C\u002Ful>\u003Cp>從風險管理角度看，OpenClaw 這版最有價值的地方，是把「可執行」和「可執行但要先問」切開。這對企業內部部署很有用，因為審批流程可以直接對接權限和稽核。\u003C\u002Fp>\u003Cp>如果你在做 AI 產品，這裡也有一個很現實的提醒。模型選得再好，沒有審批、沒有驗證、沒有錯誤回報，最後還是會變成客服地獄。\u003C\u002Fp>\u003Cp>所以我會把 3.28 看成一版偏工程的更新。它不是在比誰的 demo 比較會講話，而是在比誰比較不會在半夜炸掉伺服器。\u003C\u002Fp>\u003Ch2>這版也補了產業常見痛點\u003C\u002Fh2>\u003Cp>現在很多 agent 工具都卡在同一個問題。模型越強，外掛越多，設定越亂。結果不是卡在推理，而是卡在認證、路由、權限、以及版本相容性。\u003C\u002Fp>\u003Cp>OpenClaw 3.28 把這些問題攤開來修。像是 JSON Schema 輸出、舊 key 驗證、provider 錯誤處理、訊息通道修補，都是在處理真實使用情境，不是只做展示。\u003C\u002Fp>\u003Cp>這跟 2024 到 2025 這段時間的 agent 產品趨勢很一致。大家都開始意識到，能跑不夠，還要能管。能回答不夠，還要能停。能接工具不夠，還要能證明自己沒亂搞。\u003C\u002Fp>\u003Cp>我覺得這才是 OpenClaw 3.28 的價值。它沒有假裝自己解決了所有問題。它只是老實把幾個最麻煩的洞補起來。\u003C\u002Fp>\u003Cp>如果你有在看 agent 框架，這版很適合拿來當參考。特別是審批流程、provider 抽象、和插件安全這三塊。這三塊做不好，後面功能再多都只是堆表面。\u003C\u002Fp>\u003Ch2>接下來該看什麼\u003C\u002Fh2>\u003Cp>我會先觀察兩件事。第一，OpenClaw 會不會把審批閘門做成更細的政策規則。第二，這套審批機制能不能跨更多通道，還能保留清楚的稽核紀錄。\u003C\u002Fp>\u003Cp>如果它做得到，這版就不只是修補。它會變成後續 agent 工作流設計的參考範本。對台灣開發者來說，這種東西比單純多一個模型名稱更實用。\u003C\u002Fp>\u003Cp>所以我的建議很直接。現在就去檢查你的 agent 專案。看有沒有高風險工具沒加審批。看 provider auth 還是不是舊流程。看插件有沒有做資料外洩檢查。這三件事，至少先做一件。\u003C\u002Fp>\u003Cp>說到底，OpenClaw 3.28 不是在告訴你「AI 又更強了」。它在提醒你，AI 工具要能被管住，才真的能上線。\u003C\u002Fp>","OpenClaw 3.28 在 4 天內推了 100+ 項變更，加入審批閘門、Grok 搜尋、MiniMax 圖像工具，還修掉一堆 provider 與設定問題。","zhuanlan.zhihu.com","https:\u002F\u002Fzhuanlan.zhihu.com\u002Fp\u002F2021615520680607963",null,"https:\u002F\u002Fxxdpdyhzhpamafnrdkyq.supabase.co\u002Fstorage\u002Fv1\u002Fobject\u002Fpublic\u002Fcovers\u002Finline-1775057477157-82ln.png",[13,14,15,16,17,18,19,20,21,22],"OpenClaw","審批閘門","agent 工具","Grok 搜尋","MiniMax","Qwen","Model Studio","AI 安全","Claude Code","Codex","zh",1,false,"2026-04-01T09:42:37.483317+00:00","2026-04-01T09:42:37.275+00:00","done","e2fe9538-a6c1-4399-b9ca-5663d9b38edc","openclaw-3-28-approval-gates-updates-zh","ai-agent","1d3fe1ca-8b7c-4978-86e8-05d115e6199c","published","2026-04-09T09:00:54.895+00:00",[36,38,40,42,43,45,47,49],{"name":18,"slug":37},"qwen",{"name":19,"slug":39},"model-studio",{"name":21,"slug":41},"claude-code",{"name":14,"slug":14},{"name":20,"slug":44},"ai-安全",{"name":13,"slug":46},"openclaw",{"name":15,"slug":48},"agent-工具",{"name":16,"slug":50},"grok-搜尋",{"id":32,"slug":52,"title":53,"language":54},"openclaw-3-28-approval-gates-updates-en","OpenClaw 3.28 brings approval gates","en",[56,62,68,74,80,86],{"id":57,"slug":58,"title":59,"cover_image":60,"image_url":60,"created_at":61,"category":31},"e7874ed9-592f-4e06-b7b7-ab733fe779db","claude-agent-dreaming-outcomes-multiagent-zh","Claude 幫 Agent 加了做夢功能","https:\u002F\u002Fxxdpdyhzhpamafnrdkyq.supabase.co\u002Fstorage\u002Fv1\u002Fobject\u002Fpublic\u002Fcovers\u002Finline-1778868642412-7woy.png","2026-05-15T18:10:24.427608+00:00",{"id":63,"slug":64,"title":65,"cover_image":66,"image_url":66,"created_at":67,"category":31},"38406a12-f833-4c69-ae22-99c31f03dd52","switch-ai-outputs-markdown-to-html-zh","怎麼把 AI 輸出改成 HTML","https:\u002F\u002Fxxdpdyhzhpamafnrdkyq.supabase.co\u002Fstorage\u002Fv1\u002Fobject\u002Fpublic\u002Fcovers\u002Finline-1778743243861-8901.png","2026-05-14T07:20:21.545364+00:00",{"id":69,"slug":70,"title":71,"cover_image":72,"image_url":72,"created_at":73,"category":31},"c7c69fe4-97e3-4edf-a9d6-a79d0c4495b4","anthropic-cat-wu-proactive-ai-assistants-zh","Cat Wu 談 Claude 的主動式 AI","https:\u002F\u002Fxxdpdyhzhpamafnrdkyq.supabase.co\u002Fstorage\u002Fv1\u002Fobject\u002Fpublic\u002Fcovers\u002Finline-1778735455993-gnw7.png","2026-05-14T05:10:30.453046+00:00",{"id":75,"slug":76,"title":77,"cover_image":78,"image_url":78,"created_at":79,"category":31},"e1d6acda-fa49-4514-aa75-709504be9f93","how-to-run-hermes-agent-on-discord-zh","如何在 Discord 執行 Hermes Agent","https:\u002F\u002Fxxdpdyhzhpamafnrdkyq.supabase.co\u002Fstorage\u002Fv1\u002Fobject\u002Fpublic\u002Fcovers\u002Finline-1778724655796-cjul.png","2026-05-14T02:10:34.362605+00:00",{"id":81,"slug":82,"title":83,"cover_image":84,"image_url":84,"created_at":85,"category":31},"4104fa5f-d95f-45c5-9032-99416cf0365c","why-ragflow-is-the-right-open-source-rag-engine-to-self-host-zh","為什麼 RAGFlow 是最適合自架的開源 RAG 引擎","https:\u002F\u002Fxxdpdyhzhpamafnrdkyq.supabase.co\u002Fstorage\u002Fv1\u002Fobject\u002Fpublic\u002Fcovers\u002Finline-1778674262278-1630.png","2026-05-13T12:10:23.762632+00:00",{"id":87,"slug":88,"title":89,"cover_image":90,"image_url":90,"created_at":91,"category":31},"7095f05c-34f5-469f-a044-2525d2010ce9","how-to-add-temporal-rag-in-production-zh","如何在正式環境加入 Temporal RAG","https:\u002F\u002Fxxdpdyhzhpamafnrdkyq.supabase.co\u002Fstorage\u002Fv1\u002Fobject\u002Fpublic\u002Fcovers\u002Finline-1778667053844-osvs.png","2026-05-13T10:10:30.930982+00:00",[93,98,103,108,113,118,123,128,133,138],{"id":94,"slug":95,"title":96,"created_at":97},"4ae1e197-1d3d-4233-8733-eafe9cb6438b","claude-now-uses-your-pc-to-finish-tasks-zh","Claude 開始幫你操作電腦","2026-03-26T07:20:48.457387+00:00",{"id":99,"slug":100,"title":101,"created_at":102},"5bede67f-e21c-413d-9ab8-54a3c3d26227","googles-2026-ai-agent-report-decoded-zh","Google 2026 AI Agent 報告解讀","2026-03-26T11:15:22.651956+00:00",{"id":104,"slug":105,"title":106,"created_at":107},"2987d097-563f-46c7-b76f-b558d8ef7c2b","kimi-k25-review-stronger-still-not-legend-zh","Kimi K2.5 評測：更強，但還不是神作","2026-03-27T07:15:55.277513+00:00",{"id":109,"slug":110,"title":111,"created_at":112},"95c9053b-e3f4-4cb5-aace-5c54f4c9e044","claude-code-controls-mac-desktop-zh","Claude Code 也能操控 Mac 了","2026-03-28T03:01:58.58121+00:00",{"id":114,"slug":115,"title":116,"created_at":117},"dc58e153-e3a8-4c06-9b96-1aa64eabbf5f","cloudflare-100x-faster-ai-agent-sandbox-zh","Cloudflare 的 AI 沙箱跑超快","2026-03-28T03:09:44.142236+00:00",{"id":119,"slug":120,"title":121,"created_at":122},"1c8afc56-253f-47a2-979f-1065ff072f2a","openai-backs-isara-agent-swarm-bet-zh","OpenAI 挺 Isara 的 agent swarm …","2026-03-28T03:15:27.513155+00:00",{"id":124,"slug":125,"title":126,"created_at":127},"7379b422-576e-45df-ad5a-d57a0d9dd467","openai-plan-automated-ai-researcher-zh","OpenAI 想做自動化 AI 研究員","2026-03-28T03:17:42.090548+00:00",{"id":129,"slug":130,"title":131,"created_at":132},"48c9889e-86df-450b-a356-e4a4b7c83c5b","harness-engineering-ai-agent-reliability-2026-zh","駕馭工程：從「馬具」到「作業系統」，AI Agent 可靠性的終極密碼","2026-03-31T06:42:53.556721+00:00",{"id":134,"slug":135,"title":136,"created_at":137},"e41546b8-ba9e-455f-9159-88d4614ad711","openai-codex-plugin-claude-code-zh","OpenAI 把 Codex 放進 Claude Code","2026-04-01T09:21:54.687617+00:00",{"id":139,"slug":140,"title":141,"created_at":142},"96d8e8c8-1edd-475d-9145-b1e7a1b02b65","mcp-explained-from-prompts-to-production-zh","MCP 怎麼把提示詞變工作流","2026-04-01T09:24:39.321274+00:00"]