Trust report
Security scanner for third-party AI agent-skill files (SKILL.md manifests, hooks, bundled scripts). CLI, library, MCP server, and GitHub Action, all reading the same 10 rule packs, including cross-skill privilege chaining and prompt-injection detection. Zero-auth, zero-config npx or pip scan.
View scanned commit on GitHubopen_in_newLatest scan
medium severity
Static analysis score
Install decision
Automatic execution surfaces were detected with critical or compounding risk. Hold installation until a reviewer clears the repo.
Scan identity
Repository scan summary
Validation findings detected
Execution paths reviewed
GitHub stars
The latest default-branch scan, ordered by severity.
Share this trust result
The badge stays linked to the latest default-branch scan for this skill path.
Do you consider this skill safe to use?
Community signals help prioritize human review; they do not change the scan verdict.
AI Skill Shield is an automated pre-install review, not a guarantee of safety. Confirm sensitive permissions and execution paths before installation.