cyberneticlibrary

Audit skills for security vulnerabilities

skill-security-auditorskillsetup L217,464
alirezarezvani/claude-skills
What it does

Scan AI skills for security vulnerabilities before installation

Best for

Pre-install security gating for untrusted community skills before adding to Claude Code

Inputs
  • · skill directory path or git repo URL
  • · optional --strict flag
Outputs
  • · PASS/WARN/FAIL verdict
  • · detailed findings grouped by severity
Requires
  • · Python 3
  • · git
Preconditions

Skill directory or repo accessible locally

Failure modes

Cannot parse Python/Bash syntax, misses obfuscated payloads

Trust signals
  • · Scans 9 risk categories with explicit severity levels
  • · checks SKILL.md for prompt injection patterns