SkillSpector Security scanner for AI agent skills. Detect vulnerabilities, malicious patterns, and security risks before installing agent skills. Overview AI agent skills (used by Claude Code, Codex CLI, Gemini CLI, etc.) execute with implicit trust and minimal vetting. Research shows that 26.1% of skills contain vulnerabilities and 5.2% show likely malicious intent. SkillSpector helps you answer: "Is this skill safe to install?" Documentation Development guide — Architecture, package layout, and how to extend the analyzer pipeline.
| Stars | 7,158 |
| Forks | 523 |
| Language | Python |
| Category | AI 工具 |
| License | Apache-2.0 |
| Quality Score | 62.282/100 |
| Open Issues | 58 |
| Last Updated | 2026-06-16 |
| Created | 2026-03-21 |
| Platforms | cli, python |
| Est. Tokens | ~18k |
These tools work well together with SkillSpector for enhanced workflows:
Explore other popular ai 工具 tools:
SkillSpector is Security scanner for AI agent skills. Detect vulnerabilities, malicious patterns, and security risks.. It is categorized as a AI 工具 with 7.2k GitHub stars.
SkillSpector is primarily written in Python.
You can find installation instructions and usage details in the SkillSpector GitHub repository at github.com/NVIDIA/SkillSpector. The project has 7.2k stars and 523 forks, indicating an active community.
SkillSpector is released under the Apache-2.0 license, making it free to use and modify according to the license terms.