trackmcp
Back to directory
RudrenduPaul

skillguard

View on GitHub

Security scanner for third-party AI agent-skill files (SKILL.md manifests, hooks, bundled scripts). CLI, library, MCP server, and GitHub Action, all reading the same 10 rule packs, including cross-skill privilege chaining and prompt-injection detection. Zero-auth, zero-config npx or pip scan.

1 stars TypeScriptOthers Updated Aug 25, 2026
agent-skillsai-agentsclideveloper-toolsgithub-actionsarifsastsecuritysecurity-scannerstatic-analysissupply-chain-securitytypescriptllm-securitymcpprompt-injectionpython

No README could be loaded. View the project on GitHub for full documentation.

Frequently asked questions

What is skillguard?

skillguard is Security scanner for third-party AI agent-skill files (SKILL.md manifests, hooks, bundled scripts). CLI, library, MCP server, and GitHub Action, all reading the same 10 rule packs, including cross-skill privilege chaining and prompt-injection detection. Zero-auth, zero-config npx or pip scan.

How do I install skillguard?

Open the GitHub repository and follow its README. Most MCP servers are added to your client's MCP config, then called by your agent.

Is skillguard open source?

Yes — it is hosted on GitHub at https://github.com/RudrenduPaul/skillguard and has 1 stars.

Related MCP tools

Run your own MCP server? See who uses it and what to fix.

Measure it with TrackMCP