secure-skill

Community

Prevent malicious skills before installation.

Authordvy1987
Version1.0.0
Installs0

System Documentation

What problem does it solve?

Prevents unsafe or malicious agent skills from entering the skill library or agent context by scanning SKILL.md files, repository contents, and bundled artifacts for prompt injection, data exfiltration, credential theft, supply-chain risks, obfuscation, and instruction-hierarchy violations.

Core Features & Use Cases

  • Multi-check security audit: Runs six targeted checks (prompt injection, data exfiltration, credential access, privilege escalation, supply-chain, obfuscation) across all files in scope.
  • Orchestration and enforcement: Dispatches sibling secure-* validators, enforces an instruction hierarchy that prevents lower-trust content from overriding security policy, and produces aSAFE/BLOCKED/REQUIRES REVIEW verdict.
  • Use Cases: Gate external SKILL.md ingestion, audit third-party skill installs, perform full library security sweeps, and vet community skills prior to improvement or publication.

Quick Start

Scan the repository's SKILL.md and related files for prompt injection, credential leaks, supply-chain risks, and obfuscation and return a clear SAFE, BLOCKED, or REQUIRES REVIEW verdict.

Dependency Matrix

Required Modules

None required

Components

references

💻 Claude Code Installation

Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.

Please help me install this Skill:
Name: secure-skill
Download link: https://github.com/dvy1987/agent-loom/archive/main.zip#secure-skill

Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
View Source Repository

Agent Skills Search Helper

Install a tiny helper to your Agent, search and equip skill from 471,000+ vetted skills library on demand.