a agentk.it Browse tools
Back to Tools
skill ยท tool profile

Skill Scanner

Security Scanner for Agent Skills

skill CodexClaude CodeCursorGeneric
01

At a glance.

A compact read before the deeper capability notes and official setup links.

Fit snapshot
Format SKILL
Category skill
CodexClaude CodeCursorGeneric
02

Core features.

Feature cards focus on what the tool helps users do, not generated setup commands.

01

A best-effort security scanner for AI Agent Skills that detects prompt injection, data exfiltration, and malicious code patterns.

02

A scan that returns no findings does not guarantee that a skill is free of all threats.

03

Supports OpenAI Codex Skills and Cursor Agent Skills formats following the Agent Skills specification.

04

With --lenient, also scans non-standard formats such as Claude Code .claude/commands/.md and flat markdown skill repos.

05

CI/CD Ready - SARIF output for GitHub Code Scanning, reusable GitHub Actions workflow, exit codes for build failures

06

Pre-commit Hook - Standard pre-commit framework integration to scan skills before every commit

07

Join the Cisco AI Discord to discuss, share feedback, or connect with the team.

08

Skill Scanner is a detection tool.

04

Agent / Skill / MCP / Workflow fit.

This panel keeps technical format separate from the user-facing AI category.

Tool type SKILL
Use categories skill
Works with Codex, Claude Code, Cursor, Generic
05

Official setup path.

Generated install snippets are intentionally not mirrored here because they drift. The page links to source-owned setup docs instead.

06

Evidence and adoption notes.

These notes help a user decide whether to investigate the official project further.

Source repository last pushed at 2026-04-30T01:53:23Z.

Generated from source metadata; confirm operational details in the official project before adopting it.

Review the upstream license, maintenance activity, and issue history before using it in production.

Trusted source

Trace the origin before adopting.