skill-security-reviewer

Analyze agent skills for security threats and generate structured reports.

8|1|Updated Jan 30, 2026
One-click install
npx skills add https://github.com/oguzhantopgul/skill-security-reviewer --skill skill-security-reviewer
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: skill-security-reviewer
Source: https://github.com/oguzhantopgul/skill-security-reviewer/tree/main
Command: npx skills add https://github.com/oguzhantopgul/skill-security-reviewer --skill skill-security-reviewer

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes scripts (resource) and references (resource) components.

What problem does it solve?

This Skill enables AI systems to systematically identify vulnerabilities and risks in other agent skills, assisting developers and security teams to prevent exploits and malicious behaviors.

Core Features & Use Cases

  • Security Risk Detection: Analyzes skill content for prompt injection, code execution, data leaks, and supply chain vulnerabilities.
  • Threat Modeling: Applies detailed threat frameworks to evaluate potential attack vectors within skill components.
  • Automated Report Generation: Produces comprehensive security assessments in structured formats to facilitate review and remediation.
  • Use Case: When onboarding new skills, security teams can run this Skill to quickly validate safety and compliance, reducing manual review efforts.

Quick Start

Ask the AI to review the skill repository at a specified path or URL for potential security issues and vulnerabilities.

Frequently Asked Questions about skill-security-reviewer

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I perform a security review on agent skills?

To perform a security review on agent skills, provide the AI with the repository path or URL. The skill analyzes code, documentation, and assets for threats like prompt injection, data exfiltration, and code execution risks, generating a structured security assessment report.

What threat vectors are analyzed during an AI security risk assessment?

An AI security risk assessment analyzes threat vectors including prompt override, code execution risks, data exfiltration, and supply chain dependency vulnerabilities. It evaluates code and assets against security best practices to identify malicious patterns.

Can I automate threat modeling for AI agent code execution vulnerabilities?

Yes, you can automate threat modeling for AI agent vulnerabilities by requesting an analysis of the skill repository. The skill applies detailed threat frameworks to evaluate potential attack vectors within components and outputs a comprehensive remediation report.

Does this tool detect prompt injection and data leaks in agent skills?

Yes, this tool detects prompt injection and data leaks by analyzing skill content. It assesses compliance with security best practices, identifies malicious patterns, and produces actionable reports to help security teams validate safety during onboarding.

What are the limitations of automated security analysis for AI systems?

Automated security analysis for AI systems focuses on examining available code, documentation, and assets for known malicious patterns and threat vectors. It reduces manual review efforts but should be part of a broader security strategy to catch novel or complex exploits.