skill-security-scan is a command-line tool designed to scan and detect security risks in Claude Skills. Before installing third-party Skills, use this tool for security review to effectively prevent malicious code from stealing data or compromising your system.
git clone https://github.com/huifer/skill-security-scan.gitskill-security-scan is a command-line tool designed to scan and detect security risks in Claude Skills. Before installing third-party Skills, use this tool for security review to effectively prevent malicious code from stealing data or compromising your system.
No install command available. Check the GitHub repository for manual installation instructions.
git clone https://github.com/huifer/skill-security-scanCopy the install command above and run it in your terminal.
Launch Claude Code, Cursor, or your preferred AI coding agent.
Use the prompt template or examples below to test the skill.
Adapt the skill to your specific use case and workflow.
Scan the following Claude Skill for security risks: [SKILL_CODE]. Provide a detailed report including vulnerabilities, potential threats, and recommendations for remediation.
# Security Scan Report ## Vulnerabilities Found - **Insecure Data Handling**: The skill stores sensitive user data in plain text. - **Unverified Inputs**: The skill accepts user inputs without validation. - **Excessive Permissions**: The skill requests more permissions than necessary. ## Potential Threats - **Data Leakage**: Sensitive information could be exposed. - **Code Injection**: Malicious code could be executed. ## Recommendations - Implement data encryption for sensitive information. - Validate all user inputs to prevent injection attacks. - Request only necessary permissions.
AI assistant built for thoughtful, nuanced conversation
IronCalc is a spreadsheet engine and ecosystem
Service Management That Turns Chaos Into Control
Customer feedback management made simple
Enterprise workflow automation and service management platform
Automate your spreadsheet tasks with AI power