skill-vetter

Vet AI skills for security risks, permissions, and suspicious code patterns.

1|Updated Mar 22, 2026
One-click install
npx skills add https://github.com/steven508508/Sydney --skill skill-vetter-steven508508
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: skill-vetter
Source: https://github.com/steven508508/Sydney/tree/main/skills/skill-vetter
Command: npx skills add https://github.com/steven508508/Sydney --skill skill-vetter-steven508508

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes scripts (resource) and references (resource) components.

What problem does it solve?

This Skill ensures the security and safety of AI agents by thoroughly vetting skills before installation, checking for potential risks and vulnerabilities.

Core Features & Use Cases

  • Security-first Vetting: Checks for red flags, permission scope, and suspicious patterns in AI skills.
  • Source Verification: Validates the source and reputation of the skill.
  • Code Review Protocol: Identifies potential security risks and code issues.
  • Permission Scope Analysis: Evaluates the file and network access requirements of the skill.
  • Risk Classification: Categorizes the risk level based on the skill's behavior and permissions.
  • Use Case: Before installing any skill from ClawdHub, GitHub, or other sources.

Quick Start

Run 'vet skill skill-name' to vet an AI skill named 'skill-name'.

Frequently Asked Questions about skill-vetter

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I check an AI skill for security risks before installing it?

To check an AI skill for security risks before installing, you can vet the skill's codebase, configuration, and network behavior to identify red flags, permission scopes, and suspicious code patterns.

What is AI skill vetting and when do I need it?

AI skill vetting is a security-first review process that assesses source reputation, code integrity, and network or file access permissions. You need it before installing any skill from sources like ClawdHub or GitHub to ensure safety.

How do I review AI agent permissions and file access requests?

You review AI agent permissions by performing a permission scope analysis on the skill's configuration and network behavior, evaluating its file and network access requirements to classify potential risk levels.

Can I vet AI skills from GitHub and other third-party sources?

Yes, you can vet AI skills from GitHub, ClawdHub, or other sources by validating the source reputation and analyzing the skill's codebase for potential security vulnerabilities and suspicious patterns.

What is the best way to assess code integrity for AI agent plugins?

The best way to assess code integrity for AI agent plugins is through a code review protocol that checks for security risks and suspicious patterns while verifying the source reputation of the skill.

How do I classify the risk level of an AI skill based on its network behavior?

To classify the risk level of an AI skill, analyze its network behavior, file access permissions, and code integrity to categorize the overall threat based on its observed actions and permissions.

Related Skills