Scan AI agent skills, SKILL.md packages, and GitHub repositories for security vulnerabilities, prompt injection, and install risks before runtime execution.
Paste a public GitHub or skills.sh URL. Full imports include install scripts, workflows, registries, and submodules before validation. No account is required.
Comprehensive multidimensional analysis covering frontmatter, AST code, permissions, and supply chain.
Real-time heuristics detecting prompt injection, credential exposure, obfuscation, and dangerous shell pipelines.
Runtime markers for Claude, Codex, OpenClaw, Cursor, OpenAI Agents, and LangChain ecosystem tools.
Drop a local skill package or scan the files directly
Review GitHub install scripts, workflows, registries, and runtime risk
Inspect score, findings, repo audit evidence, and export artifacts
AI Skill Shield is an AI agent skill security scanner, validator, and checker. It helps developers and teams inspect a skill before installation by combining static validation, repository evidence, compatibility checks, and a clear install-risk report.
It is designed for Agent Skills, SKILL.md packages, MCP-adjacent workflows, and public GitHub repositories used by AI agents.
Learn how to validate SKILL.md files and review skills before adding them to your AI-agent workflow.