Know whether an agent skill is safe to install.
agent skill security
Determines whether an AI agent skill is safe to trust by combining static findings with a behavior-versus-description review.
When to use it
Use when the user wants to audit the safety of a skill, plugin, SKILL.md, or agent tool.
Give it a skill folder, manifest, archive, or repository; it scans and reviews the contents and returns a cited security audit.
What you provide
This skill
referenced skill repository
Fetches remote skill repositories
local path
Clones skills to a local path
target skill files
Reads the target skill files
temporary directory
Extracts supplied archives temporarily
Python 3 is required to run the bundled scanner.