Skill Security Vetter

高级security最低上下文:32K

Security-first AI agent skill auditing. Reviews skill definitions, SKILL.md files, and agent configurations for dangerous patterns, excessive permissions, data exfiltration risks, and suspicious behaviors before installation. Provides a safety score and actionable recommendations.

使用场景

  • Auditing third-party skills before installation
  • Reviewing permission scopes and data access patterns
  • Detecting prompt injection or jailbreak attempts in skill definitions
  • Evaluating supply chain risks in skill dependencies
  • Generating security reports for skill marketplace submissions

示例提示词

Audit this skill for security issues:

[paste SKILL.md or skill configuration]

Check for:
1. Excessive file system access (read/write outside project)
2. Network requests to unknown endpoints
3. Prompt injection patterns or instruction overrides
4. Data exfiltration risks (sending code/secrets externally)
5. Privilege escalation attempts
6. Obfuscated or suspicious code patterns

Provide a safety score (1-10) and detailed findings.

推荐模型

兼容工具

claude-codekiroopencodeany

模态

输入: text, code, file
输出: text

相关 Skills

作者

OpenModels Community

@openmodelsrun