Claude Skill Antivirus — Security skill for Claude Code
Security scanner for Claude Code Skills — 9 engines detect malicious patterns, data exfiltration, dangerous ops across 71K+ skills.
How to install Claude Skill Antivirus
This entry records only its repository, not the path inside it, so there is no
exact command to give. Open claude-world/claude-skill-antivirus and copy the folder into
~/.claude/skills/, or the file into ~/.claude/agents/.
What Claude Skill Antivirus does
Security scanner for Claude Code Skills — 9 engines detect malicious patterns, data exfiltration, dangerous ops across 71K+ skills.
Alternatives in Security
- Security Guardian — Comprehensive security analysis for RTK CLI tool, focusing on command injection, shell escaping, hook security 11.9k ★
- Skill Scanner — Security Scanner for Agent Skills 2.5k ★
- Query Token Audit — Audit token security to detect scams, honeypots, and malicious contracts across BSC, Base, Solana, and Ethereu 483 ★
README
Claude Skill Antivirus
[](https://www.npmjs.com/package/claude-skill-antivirus) [](https://github.com/claude-world/claude-skill-antivirus/actions/workflows/ci.yml) [](https://opensource.org/licenses/MIT) [](https://nodejs.org/) [](https://docs.anthropic.com/en/docs/claude-code)
A security scanner and safe installer for Claude Code Skills. Detects malicious patterns, data exfiltration attempts, and dangerous operations before installing third-party skills.
Compatible with Claude Code using Opus 4.6, Sonnet 4.6, and Haiku 4.5 models.
[繁體中文說明](./README.zh-TW.md) | [SkillsMP Scan Report](./SCAN-REPORT.md)
SkillsMP Platform Scan Results
We scanned all **71,577 skills** on SkillsMP:
| Risk Level | Count | Percentage |
|---|---|---|
| CRITICAL | 91 | 0.13% |
| HIGH | 626 | 0.87% |
| MEDIUM | 1,310 | 1.83% |
| SAFE | 69,505 | 97.11% |
**~3% of skills may have potential risks.** See [full report](./SCAN-REPORT.md) for details.
**Note**: Some findings may be false positives (e.g., legitimate 1Password/Bitwarden integrations). Manual review is recommended for flagged skills.
Features
- 9 Security Scanning Engines:
- Dangerous Commands Scanner - Detects destructive shell commands
- Data Exfiltration Scanner - Identifies data theft patterns
- External Connections Scanner - Analyzes URLs and network calls
- Permission Scanner -
Related Skills
Skillspector
Security scanner for AI agent skills. Detect vulnerabilities, malicious patterns, security risks, prompt injec
Skillguard
Security scanner for AI agent skills. Detects prompt injection, data exfiltration, and malicious payloads befo
Skill Sentinel
A security scanner for Agent Skill packages. Skill Sentinel uses multi-agent AI analysis to detect prompt inje
Cc Skill Audit
Security scanner & PreToolUse firewall for Claude Code third-party skills. Detects undisclosed telemetry, outb
Hermes Repo Scanner
Pre-install security scanner for Hermes Agent skills — 68 patterns across 10 categories, OWASP ASI-mapped
Skill Lint
Security scanner for Claude Code / agent skills. Catches prompt injection, obfuscation, credential exfiltratio
Related Agents
Opentofu Ops Expert
Senior DevOps / OpenTofu expert. Use proactively for IaC authoring/review: validate syntax/modules/plans, enfo
Sec Reviewer
Read-only security review for ClaudeSec — verifies correctness, security risk, regressions, and that scanner c
Kavach History
KAVACH git-history forensics specialist. Mines commit history for security-relevant commits with no CVE/GHSA l