Agent♥︎Age
Catalog

io.github.RudrenduPaul/skillguard

Official

by RudrenduPaul · TypeScript

Security scanner for third-party AI agent-skill files (SKILL.md, hooks, scripts) via MCP.

io.github.RudrenduPaul/skillguard Model Context Protocol (MCP) Server

This MCP server provides a security scanner for third-party AI agent-skill files, specifically targeting SKILL.md, hooks, and scripts. It is described as a CLI-focused tool that outputs results compatible with security workflows such as SAST and supply-chain security scanning.

🛠️ Key Features

  • Scans third-party AI agent-skill files
  • Targets SKILL.md, hooks, and scripts
  • Produces security scan output in formats associated with SARIF/SAST

🚀 Use Cases

  • Static analysis of agent skill repositories
  • Supply-chain security checks for agent skill contributions
  • Security scanning related to prompt-injection risk

⚡ Developer Benefits

  • Supports developer tooling workflows (CLI and GitHub Actions)
  • Works in environments using MCP and TypeScript/Python ecosystems

⚠️ Limitations

  • Scope is limited to security scanning of SKILL.md, hooks, and scripts within third-party agent skills

Topics

agent-skillsai-agentsclideveloper-toolsgithub-actionsarifsastsecuritysecurity-scannerstatic-analysissupply-chain-securitytypescriptllm-securitymcpprompt-injectionpython

Related servers

More in Security
io.github.RudrenduPaul/skillguard - agentage MCP Catalog