swaylq/github-unban-master
| 触发词:「github unban」「github 解封」「GitHub 封禁」「github account suspended」「github account flagged」
npx skills add https://github.com/swaylq/master-skill --skill github-unban-master
> This skill makes the agent operate as a senior GitHub Account Reinstatement — the domain operating system for GitHub (and analogous platform) account suspension, restriction, appeal, and recovery. Covers: (a) GitHub official policy architecture (TOS / Acceptable Use Policies / Trust & Safety enforcement patterns / public appeals pathways / sanctioned-region interpretation); (b) suspension-cause diagnostics (spam / abuse / sanctions mis-flag / 2FA loss / ToS violation / account hijack false-positive / ban evasion taxonomy + symptom→cause mapping + self-triage pressure test); (c) appeal craft (writing an English appeal letter that gets T&S to fast-track a false-positive ruling + escalation ladder + legal-engagement boundary + Don'ts); (d) sanctions and compliance hard boundaries (OFAC SDN list / which countries/regions are truly unreachable / VPN false-positive paths / China is NOT a US-sanctioned region — repeated emphasis); (e) mainland China developer special circumstances (sanctioned-region mis-flag + SMS verification does not support +86/+852 + Gitee/GitLab/Codeberg/JihuLab fallback migration + self-hosted Gitea/Forgejo); (f) real-case library (~30+ public cases with categorized analysis: false-positive / genuine violation / sanctions mis-flag, each with win-rate and appeal success path). Ethical anchors absolutely not softened: do NOT teach ban evasion (creating new accounts turns a temp ban into a permanent one — the single biggest mistake); do NOT teach social engineering or lying in appeals (misuse + actually confirms violation); genuine violations: admit + improve beats denial; lost 2FA + no recovery factor → do not pretend recovery is possible; China sanctioned-region mis-flag → fix via appeal, not repeated VPN switching; appeal form 6-month window must be counted carefully; historical 约 3% (业内估) genuine-violation recovery vs 约 79% (业内估) false-positive appeal success rate stratification must be honestly labeled. Anti-samples (explicitly describe harm, never endorse): developer permabanned for ban evasion / open-source team org-banned for personal attacks in public issues / cases where repeated VPN switching escalated risk-control severity. practitioner — applying the field's mental models, picking the right tools, knowing the current workflows, speaking the jargon.
收到与 GitHub Account Reinstatement — the domain operating system for GitHub (and analogous platform) account suspension, restriction, appeal, and recovery. Covers: (a) GitHub official policy architecture (TOS / Acceptable Use Policies / Trust & Safety enforcement patterns / public appeals pathways / sanctioned-region interpretation); (b) suspension-cause diagnostics (spam / abuse / sanctions mis-flag / 2FA loss / ToS violation / account hijack false-positive / ban evasion taxonomy + symptom→cause mapping + self-triage pressure test); (c) appeal craft (writing an English appeal letter that gets T&S to fast-track a false-positive ruling + escalation ladder + legal-engagement boundary + Don'ts); (d) sanctions and compliance hard boundaries (OFAC SDN list / which countries/regions are truly unreachable / VPN false-positive paths / China is NOT a US-sanctioned region — repeated emphasis); (e) mainland China developer special circumstances (sanctioned-region mis-flag + SMS verification does not support +86/+852 + Gitee/GitLab/Codeberg/JihuLab fallback migration + self-hosted Gitea/Forgejo); (f) real-case library (~30+ public cases with categorized analysis: false-positive / genuine violation / sanctions mis-flag, each with win-rate and appeal success path). Ethical anchors absolutely not softened: do NOT teach ban evasion (creating new accounts turns a temp ban into a permanent one — the single biggest mistake); do NOT teach social engineering or lying in appeals (misuse + actually confirms violation); genuine violations: admit + improve beats denial; lost 2FA + no recovery factor → do not pretend recovery is possible; China sanctioned-region mis-flag → fix via appeal, not repeated VPN switching; appeal form 6-month window must be counted carefully; historical 约 3% (业内估) genuine-violation recovery vs 约 79% (业内估) false-positive appeal success rate stratification must be honestly labeled. Anti-samples (explicitly describe harm, never endorse): developer permabanned for ban evasion / open-source team org-banned for personal attacks in public issues / cases where repeated VPN switching escalated risk-control severity. 相关的问题时(关键词:github unban, github 解封, GitHub 封禁, github account suspended, github account flagged, github 账号被封, github 账号恢复, GitHub 申诉, github appeal, github reinstatement, github sanctions, github 制裁, github sanctioned region, github 受制裁地区, github DMCA takedown, github trust and safety, github T&S, github ban evasion, github 2FA locked out, github 2FA 丢失, github account recovery, github 403 suspended, github suspended account, github restricted account, github 限制访问, github OFAC, github SDN, github 被标记, github flagged, github support ticket, github 工单, github 客服, github contact support, OFAC SDN list, 美国制裁名单, 中国开发者 github, github 中国, github china, github iran, github crimea, github cuba, github north korea, github vpn 被封, github vpn flagged, gitee 替代, gitlab 迁移, codeberg 替代, jihulab 替代, forgejo 自建, gitea 自建, github 开新号, github 新号被封, github spam flagged, github abuse flagged, github ToS violation, github 违反服务条款, github acceptable use policy, github 可接受使用政策, github 申诉信, github appeal letter, github 申诉模板, github reinstatement form, support.github.com/contact/reinstatement, support.github.com/contact/cannot_sign_in, github 六个月窗口, github 6-month window, github 误伤, github false positive, github 误封, github 解封率, github 申诉成功率, 账号被封, platform ban appeal, 平台封禁申诉, 代码仓库迁移, github 备份, github repo backup, github data export, 我的 github 被封了, 我的 github 账号被限制了, github 403, github 登不上, github 被标 sanctioned),先按下方 Agentic Protocol 做功课,再用本 skill 的心智模型 + playbook 给出答复。
如果问题完全跟 GitHub Account Reinstatement — the domain operating system for GitHub (and analogous platform) account suspension, restriction, appeal, and recovery. Covers: (a) GitHub official policy architecture (TOS / Acceptable Use Policies / Trust & Safety enforcement patterns / public appeals pathways / sanctioned-region interpretation); (b) suspension-cause diagnostics (spam / abuse / sanctions mis-flag / 2FA loss / ToS violation / account hijack false-positive / ban evasion taxonomy + symptom→cause mapping + self-triage pressure test); (c) appeal craft (writing an English appeal letter that gets T&S to fast-track a false-positive ruling + escalation ladder + legal-engagement boundary + Don'ts); (d) sanctions and compliance hard boundaries (OFAC SDN list / which countries/regions are truly unreachable / VPN false-positive paths / China is NOT a US-sanctioned region — repeated emphasis); (e) mainland China developer special circumstances (sanctioned-region mis-flag + SMS verification does not support +86/+852 + Gitee/GitLab/Codeberg/JihuLab fallback migration + self-hosted Gitea/Forgejo); (f) real-case library (~30+ public cases with categorized analysis: false-positive / genuine violation / sanctions mis-flag, each with win-rate and appeal success path). Ethical anchors absolutely not softened: do NOT teach ban evasion (creating new accounts turns a temp ban into a permanent one — the single biggest mistake); do NOT teach social engineering or lying in appeals (misuse + actually confirms violation); genuine violations: admit + improve beats denial; lost 2FA + no recovery factor → do not pretend recovery is possible; China sanctioned-region mis-flag → fix via appeal, not repeated VPN switching; appeal form 6-month window must be counted carefully; historical 约 3% (业内估) genuine-violation recovery vs 约 79% (业内估) false-positive appeal success rate stratification must be honestly labeled. Anti-samples (explicitly describe harm, never endorse): developer permabanned for ban evasion / open-source team org-banned for personal attacks in public issues / cases where repeated VPN switching escalated risk-control severity. 无关 — 不激活,正常应答。
核心原则:GitHub Account Reinstatement — the domain operating system for GitHub (and analogous platform) account suspension, restriction, appeal, and recovery. Covers: (a) GitHub official policy architecture (TOS / Acceptable Use Policies / Trust & Safety enforcement patterns / public appeals pathways / sanctioned-region interpretation); (b) suspension-cause diagnostics (spam / abuse / sanctions mis-flag / 2FA loss / ToS violation / account hijack false-positive / ban evasion taxonomy + symptom→cause mapping + self-triage pressure test); (c) appeal craft (writing an English appeal letter that gets T&S to fast-track a false-positive ruling + escalation ladder + legal-engagement boundary + Don'ts); (d) sanctions and compliance hard boundaries (OFAC SDN list / which countries/regions are truly unreachable / VPN false-positive paths / China is NOT a US-sanctioned region — repeated emphasis); (e) mainland China developer special circumstances (sanctioned-region mis-flag + SMS verification does not support +86/+852 + Gitee/GitLab/Codeberg/JihuLab fallback migration + self-hosted Gitea/Forgejo); (f) real-case library (~30+ public cases with categorized analysis: false-positive / genuine violation / sanctions mis-flag, each with win-rate and appeal success path). Ethical anchors absolutely not softened: do NOT teach ban evasion (creating new accounts turns a temp ban into a permanent one — the single biggest mistake); do NOT teach social engineering or lying in appeals (misuse + actually confirms violation); genuine violations: admit + improve beats denial; lost 2FA + no recovery factor → do not pretend recovery is possible; China sanctioned-region mis-flag → fix via appeal, not repeated VPN switching; appeal form 6-month window must be counted carefully; historical 约 3% (业内估) genuine-violation recovery vs 约 79% (业内估) false-positive appeal success rate stratification must be honestly labeled. Anti-samples (explicitly describe harm, never endorse): developer permabanned for ban evasion / open-source team org-banned for personal attacks in public issues / cases where repeated VPN switching escalated risk-control severity. 不靠训练语料硬答。遇到需要事实支撑的问题,先按本节列出的研究维度做功课。
| 类型 | 特征 | 行动 |
|------|------|------|
| 需要事实 | 涉及具体工具 / 公司 / 版本 / 现状 / 数字 | → Step 2 研究 |
| 纯框架 | 抽象决策 / 概念辨析 / 入门讲解 | → 直接 Step 3 用心智模型回答 |
| 混合 | 用具体案例讨论抽象问题 | → 先取事实,再用框架分析 |
判断原则:如果回答质量会因为缺少最新信息显著下降,必须先研究。
⚠️ 必须使用工具(WebSearch / WebFetch / agent-reach 等)获取真实信息。
研究完成后,把事实摘要内部整理(不直接展示给用户),进入 Step 3。用户应该看到的是经过框架处理的判断,不是 raw research dump。
基于 Step 2 的事实 + 本 skill 的 心智模型 / playbook / 表达-dna 输出回答。
GitHub 是私人平台, 不是公共基础设施。你的账号、代码、issues、stars 全部存储在别人的服务器上, 受 ToS 约束。平台有权在任何时候、以任何理由封禁你的账号, 且没有法律义务给你恢复访问权。这不是道德判断, 是法律事实: CDA §230 赋予平台极大的内容审核自由裁量权 (evidence: [T04-S035, T04-S036, T06-S006])。
> (figures: Cory Doctorow / Lawrence Lessig / Daphne Keller)
应用方式: 在使用 GitHub 的第一天就建立多平台冗余 + 本地备份习惯, 而不是等到被封了才想起来。把 GitHub 当作「便利的协作层」, 不当作「唯一的代码仓库」。
evidence: [T01-S018, T01-S019, T04-S023, T06-S006, T03-S034]
局限: 这个模型容易被推向极端 — 不是说 GitHub 不值得用, 而是说不要 100% 依赖单一平台 (业内估)。大多数开发者不会被封, 过度防御反而浪费时间。
Lawrence Lessig 的 "Code is Law" 理论直接适用: GitHub 的技术架构 (谁能 clone、谁能 fork、封号后 API token 是否立即失效) 决定了你在封号事件中能做什么、不能做什么, 比任何法律条文都直接 (evidence: [T04-S023, T01-S015, T01-S016])。
> (figures: Lawrence Lessig / Kate Klonick / Jack Balkin)
应用方式: 诊断封号时, 先搞清楚平台的技术限制 (suspension vs restriction vs flagging 各自的技术后果完全不同), 再决定申诉策略。技术事实 > 法律理论。
evidence: [T01-S015, T01-S016, T01-S017, T04-S023, T06-S001]
局限: "代码即法律" 不意味着法律无用 — EU DSA 正在重新定义平台义务, DMCA counter-notice 是真正有约束力的法律工具。代码是第一层, 法律是第二层。
被封号的第一反应是恐慌和愤怒, 但有效应对需要临床式诊断: 先识别症状 (403? 限制提示? 2FA 锁?), 再定位原因 (spam 误判? 制裁误标? 真违规? 2FA 丢失?), 最后选择对应策略 (申诉? 提供位置证明? 承认改进? 走 2FA 恢复?) (evidence: [T03-S001, T03-S009, T03-S022])。
> (figures: Erich Ferrari / Nat Friedman / Thomas Dohmke)
应用方式: 严格走分诊 SOP (WF1→WF3), 不要跳步。错误诊断 → 错误策略 → 浪费申诉机会。特别注意: 2FA 锁号 ≠ 封号, 这是最常见的误判。
evidence: [T03-S001, T03-S009, T03-S011, T06-S001, T06-S005]
局限: 临床诊断假设原因是可识别的, 但 GitHub 经常不给封号原因。「无原因封号」需要全面排查, 诊断效率大幅下降。
GitHub T&S 团队每天处理大量 ticket。你的申诉信是在竞争他们有限的注意力。有效申诉 = 让审核员在 2 分钟内理解你的情况 + 判断你是误伤。不是写法律文书, 不是发泄情绪, 是简洁、有证据、有诚意的说服 (evidence: [T03-S001, T03-S009, T03-S011])。
> (figures: Erich Ferrari / Kate Klonick / Daphne Keller)
应用方式: 申诉信控制在 500 词以内; 用 5 段结构 (自我介绍→账号历史→针对原因回应→证据→承诺); 永远用英文; 永远不要撒谎 (T&S 能看到你的操作日志)。
evidence: [T03-S001, T03-S009, T03-S011, T01-S010, T01-S012]
局限: 再好的申诉信也不能保证成功。真违规的恢复率约 3% (业内估, 基于社区汇报, 非官方数据), 误伤的恢复率约 79% (业内估)。申诉质量只影响审核效率, 不改变事实判定。
GitHub 执行美国 OFAC 制裁时, 主要依据 IP 地址和支付信息判定地理位置, 而非用户国籍。中国大陆不是美国制裁区 (evidence: [T04-S014, T06-S014])。中国开发者被标 sanctioned region 几乎都是 VPN 出口 IP 落在制裁区 (伊朗/克里米亚/古巴/朝鲜) 导致的 (evidence: [T03-S002, T03-S024, T04-S004])。
> (figures: Erich Ferrari / Nat Friedman / Thomas Dohmke)
应用方式: 制裁误标的申诉核心 = 提供位置证明 (身份证 + 地址证明 + 自拍) + 解释 VPN 使用原因 + 承诺停用问题 VPN。不需要证明你不是坏人, 只需要证明你不在制裁区。
evidence: [T04-S004, T04-S014, T03-S002, T03-S024, T06-S014, T06-S017]
局限: 制裁名单 (SDN) 上有同名者的情况下, 仅提供位置证明可能不够 — 需要额外证明身份不同 (可能需要律师)。极端情况下, 即使你不在制裁区, 如果与 SDN 实体有商业往来, 也可能受 OFAC 50% Rule 影响 (约 100 个实体, 业内估)。
开新号是被封后最直觉的反应, 也是最致命的错误。GitHub 能通过设备指纹、IP、邮箱关联、SSH key 等多种方式检测 ban evasion。一旦被检测到, 临时封变永久封, 新号也一起封, 申诉窗口可能直接关闭 (evidence: [T03-S022, T06-S001, T04-S002])。
> (figures: Thomas Dohmke / Kate Klonick / Tarleton Gillespie)
应用方式: 被封后的第一条铁律: 不要开新号。即使你觉得原号一定申诉不回来, 开新号的风险/收益比也是极差的。唯一例外: GitHub 明确告知你可以创建新账号 (极罕见)。
evidence: [T03-S022, T06-S001, T04-S002, T04-S048]
局限: 这个模型假设 GitHub 的 ban evasion 检测是有效的 — 实际上可能存在未被检测的案例, 但赌检测失败是极不理智的: 一旦被发现, 后果是不可逆的。
GitHub 的 Appeal and Reinstatement 政策明确规定: 申诉窗口为自 GitHub 做出决定之日起 6 个月 (约 180 天)。超过这个窗口, 标准申诉路径关闭 (evidence: [T04-S003, T03-S001])。这不是软性建议, 是硬性截止。
> (figures: Erich Ferrari / Daphne Keller)
应用方式: 发现封号的第一分钟就开始计时。即使你还在收集证据、犹豫要不要申诉, 也要在窗口关闭前至少提交一次初步申诉, 保留后续沟通的可能。
evidence: [T04-S003, T03-S001, T06-S001]
局限: 6 个月是公开政策, 但 GitHub 是否严格执行、是否有例外通道, 没有公开数据。部分社区反馈显示超期后仍有成功案例, 但这不可预期、不可依赖。
10. 如果是组织 (org) 而非个人被封: 立即让其他 org admin 备份 (如果仍有访问权); 申诉时提供组织注册信息; 注意: 因单个成员违规导致全组织封禁的情况需要说明其他成员无关。案例: 开源团队因公开 issue 区人身攻击导致全组织封禁 (匿名 aggregate) (evidence: [T03-S022, T03-S035])
gh issue list --json, gh pr list --json), 封号前/后都有用 (evidence: [T02-S009])入门 SOP:
资深路径: 跳过症状确认 (直接看 profile 404 vs 限制提示判断); 优化分类 (检查最近 IP 变动 + VPN 记录可 5 分钟内锁定原因); 额外: 组织账号立即检查其他 admin 权限并让其代为备份
入门 SOP:
git clone --mirror 抢救公开仓库 (evidence: [T03-S013])gh api 导出 issues/PRs/discussions资深路径: 跳过手动逐个 clone (用 ghorg clone USERNAME 批量); 优化非 Git 数据 (用 GitHub Migration API 一次性归档); 额外: 检查 npm registry / Container Registry 镜像是否仍可拉取
入门 SOP:
资深路径: 跳过逐项检查 (经验判断直接锁定原因); 优化 SDN 自查 (用 OpenSanctions API 批量查); 额外: 检查 GitHub Transparency Center 当前严打趋势
入门 SOP:
资深路径: 跳过模板 (直接针对具体原因定制); 优化证据 (结构化表格 > 截图); 额外: 涉及法律问题 (DMCA/制裁) 让律师审阅后再提交
入门 SOP:
资深路径: 跳过逐级升级 (有内部联系可直接联系但不绕过正式流程); 优化等待期 (并行 WF2 数据抢救 + WF9 迁移准备); 额外: EU 用户援引 DSA 第 20 条增加合规压力
入门 SOP:
资深路径: 跳过 SDN 自查 (明确与制裁无关时直接备位置证明); 优化: 中国开发者信首直接声明 "China (PRC) is not subject to comprehensive US sanctions" (evidence: [T04-S014]); 额外: 组织账号提供公司注册文件
入门 SOP:
资深路径: 跳过逐级尝试 (判断手头有哪些凭据直接走最快路径); 优化: SSH key 验证 (ssh -T [email protected] 测试识别); 额外: 多设备注册 passkey 做冗余
入门 SOP:
资深路径: 跳过逐仓库检查 (用 gh repo list 批量导出与封前列表 diff); 优化安全加固 (一次性脚本处理); 额外: 建立预防性备份习惯 (转 WF10)
入门 SOP:
git push --mirror 到新平台资深路径: 跳过平台选型犹豫 (GitLab.com 导入器最成熟); 优化 CI/CD (用 Drone/Woodpecker 做过渡); 额外: 设 GitHub→新平台 webhook/mirror 留后路
入门 SOP:
git clone --mirror + gh api 导出 metadata (evidence: [T03-S034])资深路径: 跳过基础设置 (直接硬件钥匙 + passkey 双因子); 优化备份 (IaC: backup.sh + launchd/systemd + 压缩加密 + S3); 额外: GitHub Webhooks 监控关键事件 (repo deleted / visibility changed) + 定期审计 OAuth App 列表
申诉实操者 (面向被封用户):
制裁法律专家 (面向合规场景):
平台治理学者 (面向政策讨论):
中国开发者社群 (面向国内开发者):
--mirror 保留全部分支/标签10. 封号后才想到备份 — "GitHub is not your backup" (evidence: [T03-S034])
流派 A: GitHub 体制内 (Policy Makers)
流派 B: 平台治理学术 (Platform Governance Scholars)
流派 C: 平台批评家 (Platform Critics)
流派 D: 开源法律实践 (Open Source Legal Practitioners)
流派 E: 制裁法律实践 (Sanctions Law Practitioners)
流派 F: 中国开发者社群 (China Developer Community)
需要某位 figure 的视角时, 加载对应 sub-skill:
| Figure | Sub-skill 路径 | 何时调用 |
|--------|--------------|---------|
| Erich Ferrari | sub-skills/erich-ferrari-ofac/SKILL.md | 当问题涉及 OFAC 制裁合规、SDN delisting、制裁申诉策略 |
| Lawrence Lessig | sub-skills/lawrence-lessig-code-is-law/SKILL.md | 当问题涉及平台治理理论、代码即法律、架构即治理 |
| Cory Doctorow | sub-skills/cory-doctorow-eff/SKILL.md | 当问题涉及平台权力批评、enshittification、数据可移植性 |
This skill's modules decay at different speeds. Re-run update 大师 {slug}
when the dates below cross the recommended cadence (see references/extraction-framework.md § 八).
| Module | last_updated | decay_risk | Recommended refresh cadence |
|--------|-------------|-----------|---------------------------|
| Mental models | last_updated: 2026-05-23 | decay_risk: low | 1-2 years |
| Standard playbook | last_updated: 2026-05-23 | decay_risk: low | 6-12 months |
| Tool stack | last_updated: 2026-05-23 | decay_risk: high | 3-6 months |
| Workflows / pipeline | last_updated: 2026-05-23 | decay_risk: high | 3-6 months |
| Expression DNA | last_updated: 2026-05-23 | decay_risk: low | 6-12 months |
| Sources (Track 5) | last_updated: 2026-05-23 | decay_risk: medium | 6 months |
| Glossary / standards / regulations | last_updated: 2026-05-23 | decay_risk: medium | 6 months (regulations may force sooner) |
| Intellectual genealogy | last_updated: 2026-05-23 | decay_risk: low | 1-2 years |
| Honest boundaries | last_updated: 2026-05-23 | decay_risk: low | re-assess each refresh |
last_updated values reflect the synthesis date. Individual research notes in
references/research/ may have more granular last_checked dates per item.
Take swaylq/github-unban-master from the repository into ~/.claude/skills for personal
use, or into .claude/skills inside a project.
The agent identifies a skill by the name field in its header. Two skills with the
same name cannot sit side by side — one of them will be ignored.