Skillguard
Description
Security scanner for AI agent skills. Detects prompt injection, data exfiltration, and malicious payloads before you install.
Installation
This entry records only its repository, not the path inside it, so there is no
exact command to give. Open the source below and copy the folder into
~/.claude/skills/, or the file into ~/.claude/agents/.
README
skillguard
**Security scanner for AI agent skills. Detects prompt injection, data exfiltration, and malicious payloads before you install. Zero dependencies.**
[](tests/) [](https://pypi.org/project/skillguard/) [](pyproject.toml) [](pyproject.toml) [](LICENSE) [](https://www.linkedin.com/in/linda-oraegbunam/)
The problem
In January 2026, the **ClawHavoc campaign** dropped 341 malicious skills into the Claude skill marketplace in 3 days. Snyk's **ToxicSkills audit** found that **13.4% of 3,984 skills** contain critical security issues — prompt injection payloads, data exfiltration code, and rug-pull remote execution. The OWASP Agentic Skills Top 10 lists skill supply-chain attacks as the #1 risk for AI agents.
There is no open-source scanner for this. Until now.
pip install skillguard
skillguard scan SKILL.md
CRITICAL my_skill.md
Risk score: 80/100
Findings: 3
[SG-011] Lethal Trifecta (Supply Chain Attack Pattern)
Severity: CRITICAL
Description:
Prompt injection + network access + file system access detected
together. This combination is the hallmark of ClawHavoc-style
supply chain attack skills.
Remediation:
Immediately reject and report this skill.
Lines: [4, 12, 19]
[SG-001] Prompt Injection
Severity: CRITICAL
Description:
The skill contains text that attempts to override the agent's
system prompt. Primary technique used in ClawHavoc campaign.
[SG-002] Data Exfiltration
Severity: CRITICAL
Related Skills
Fastapi Review
Review a FastAPI application for architecture, async correctness, dependency injection, Pydantic schemas, secu
Security Defense in Depth
Implement multi-layered testing and security best practices.
Security SecLists Official Repository
[OWASP Testing Guide](https://owasp.org/www-project-web-security-testing-guide/)
Security Threat Hunting with Sigma Rules
Use Sigma detection rules to hunt for threats and analyze security events
Security Maintenance Walkthrough - 2026-03-29
- Re-triaged the full 2026-03-15 security finding set against current `main` and wrote a fresh current-head re
Security Google Workspace Model Armor
Filter user-generated content for safety
Security Related Agents
Django Reviewer
Expert Django code reviewer specializing in ORM correctness, DRF patterns, migration safety, security misconfi
Token Auditor
Scans ui/src/ for hardcoded visual values, duplicate components, and shadcn replacement candidates; produces d
Gitnexus Security Boundary Reviewer
GitNexus security and trust-boundary reviewer. Use for auth, permissions, secrets, injection, unsafe parsing,