skillssafe-mcp
Allows scanning of AI agent skill files hosted on GitHub for security threats, including credential theft, prompt injection, and malware indicators.
skillssafe-mcp
MCP server for SkillsSafe — the security layer for AI agents.
Scan SKILL.md files, MCP configs, and system prompts for:
🔐 Credential theft & data exfiltration
💉 Prompt injection attacks
👻 Zero-width character attacks
🦠 ClawHavoc malware indicators
🐚 Shell injection & reverse shells
🔍 Scope creep & memory poisoning
Free. No API key. No signup.
Quick Start
Claude Desktop
Add to ~/Library/Application Support/Claude/claude_desktop_config.json:
{
"mcpServers": {
"skillssafe": {
"command": "npx",
"args": ["-y", "skillssafe-mcp"]
}
}
}Cursor
Add to .cursor/mcp.json:
{
"mcpServers": {
"skillssafe": {
"command": "npx",
"args": ["-y", "skillssafe-mcp"]
}
}
}Direct SSE (Remote)
For clients that support SSE transport:
https://mcp.skillssafe.com/sseRelated MCP server: SkillsGuard
Tools
scan_skill
Scan an AI agent skill file for security threats before installation.
Parameters:
url - URL of skill to scan (GitHub raw URL, ClawHub URL, etc.)
content - Raw text content of skill to scan (alternative to url)
lang - Response language: "en" | "zh" | "ja" (default: "en")
Returns:
decision - INSTALL / REVIEW / BLOCK
risk_score - 0–100
threats - List of detected threats with severity
scan_id - ID for retrieving full reportget_report
Retrieve a previously generated scan report.
Parameters:
scan_id - Scan ID returned by scan_skillRegistry
Official MCP Registry:
com.skillssafe/scannerSmithery: skillssafe
Glama: skillssafe-mcp
🛡️ Security Audit
This project is indexed by SkillsSafe.
You can audit this MCP server before installing it:
openclaw mcp add skillssafe https://mcp.skillssafe.com/sseCheck out the community discussion on Cursor Forum.
License
MIT © SkillsSafe
This server cannot be deployed
Maintenance
Related MCP Connectors
Scan AI agent skills and configs for hidden Unicode, prompt injection and exfiltration.
Scan GitHub-hosted AI skills for vulnerabilities: prompt injection, malware, OWASP LLM Top 10.
Scan any public URL for hidden instructions aimed at AI agents (prompt injection). Free, no auth.
Prompt injection detection API for AI agents. Scan untrusted text before passing it to an LLM.
Related MCP Servers
- FlicenseNot gradedqualityDmaintenanceScans OpenClaw/ClawHub skills for security vulnerabilities before installation. Detects prompt injection, data exfiltration, credential theft and RCE risks. Autonomous AI-to-AI flow with zero human intervention required.-
- FlicenseNot gradedqualityDmaintenanceStatic security scanner for AI agent skill packages that detects malicious SKILL.md files and bundled scripts before they run.15-

AgentVerus MCP Serverofficial
AlicenseNot gradedqualityDmaintenanceSecurity scanning for AI agent skills exposed as MCP tools, enabling skill analysis from ClawHub, GitHub, skills.sh, or raw URLs.13 npmMIT- AlicenseNot gradedqualityCmaintenanceProvides a security scanner for AI agent skills and MCP servers, detecting threats like prompt injection, identity hijacking, and memory poisoning.27 npm2MIT