Confiance 46/100Risque moyen0 compétences

Package

snyk/agent-scan

Security scanner for AI agents, MCP servers and agent skills.

Trust means

Trust score is a heuristic blend of popularity, freshness, structure quality, and safety penalties. Useful for ranking, not a guarantee.

Risk means

Risk is generated by automated scans of skills, files, and allowed tools. It is not the same thing as a human security review.

Review status

Auto-scanned only. Some caution signals were detected, so treat this as a review queue item, not a safe default.

Risque : moyen (auto-imported from GitHub; risk not assessed)

Étoiles

2 050

Forks

198

Compétences

0

Fichiers

0

Suitable for

Teams that care about trust posture, explainability, and controlled adoption before they let a workflow package into normal use.

Not suitable for

Not enough on its own for high-assurance environments that require formal review, threat modeling, or vendor approval.

Install prerequisites

What to verify before touching install

  • Treat this page as triage, not as a finished security assessment.
  • Review the repo and the highest-risk skills yourself before installation.
  • Decide what extra internal approval is required for your environment.

Recommended first read

Review the lowest-risk skill first

Start with the clearest, lowest-risk skill so you understand the package boundary before you install anything.

Chemin: racine

After install

How to verify it actually works

Confirm the installed files match what the page claims is in the package.
Re-check risky skills manually and compare them with your internal policies.
Document whether the package should be allowed, restricted, or rejected for future installs.

Core skills

What this package actually helps you do

Package contents

Folders and files

Last step

Install only after the checks above

If the package fits your workflow, the starter skill makes sense, and the auto-scan signals are acceptable for your environment, then use the exact install command below.

Install command

npx skills add snyk/agent-scan

Claude Code

Copy to .claude/skills/

GitHub Copilot

Copy to .github/skills/

Codex CLI

Copy to .agents/skills/

Gemini CLI

Copy to .gemini/skills/

Community Signals

What users think

🟢 Active

Packages associés

Similar packages worth comparing

agentworks/secure-skills

Curated, low-risk skills for code review, research, and triage.

Confiance 86/100Risque faible
Voir

mukul975/Anthropic-Cybersecurity-Skills

753+ structured cybersecurity skills for AI agents · MITRE ATT&CK mapped · agentskills.io open standard · Works with Claude Code, GitHub Copilot, OpenAI Codex CLI, Cursor, Gemini CLI & 20+ platforms · Penetration testing, DFIR, threat intel, cloud security & more · Apache 2.0

Confiance 46/100Risque moyen
Voir

alinaqi/claude-bootstrap

Opinionated project initialization for Claude Code. Security-first, spec-driven, AI-native.

Confiance 43/100Risque moyen
Voir

wrsmith108/varlock-claude-skill

Claude Code skill for secure environment variable management with Varlock. Never expose secrets in Claude sessions.

Confiance 20/100Risque moyen
Voir
snyk/agent-scan - Install Agent Skills