{"categories":[{"label":"Testing","url":"https://skillfed.io/packages/category/software-development-testing/4"},{"label":"Security","url":"https://skillfed.io/packages/category/security/2"},{"label":"Quality Assurance","url":"https://skillfed.io/packages/category/software-development-quality-assurance/3"}],"enrichment":{"capability":"Scans AI Agent Skills for prompt injection, data exfiltration, and malicious code using pattern-based detection, LLM analysis, and behavioral dataflow inspection.","skillfed_tags":["ai-security","threat-detection","ci-cd-ready"],"use_cases":["Scan AI agent skills in a GitHub Actions workflow before deployment to catch known threat patterns early.","Use as a pre-commit hook to prevent developers from committing skills with obvious prompt injection or exfiltration code.","Audit a repository of existing skills with behavioral and LLM analyzers enabled to identify latent threats across the codebase.","Generate SARIF reports for GitHub Code Scanning to surface skill security findings alongside other code quality checks.","Customize scan policies and YARA rules to match your organization's risk tolerance and threat model.","Integrate VirusTotal or Cisco AI Defense cloud scanning for binary and hash-based threat correlation."],"what_it_does":"Cisco AI Skill Scanner is a multi-engine security scanner designed to detect threats in AI Agent Skills\u2014executable skill definitions for LLM agents following OpenAI Codex or Cursor Agent formats. It combines static pattern matching (YAML + YARA rules), behavioral dataflow analysis, and optional LLM-as-a-judge semantic analysis to identify prompt injection, data exfiltration, and malicious code patterns. The tool explicitly disclaims comprehensive coverage: a clean scan does not guarantee security, and novel attacks may evade detection.\n\nThe scanner integrates into CI/CD pipelines via SARIF output for GitHub Code Scanning, pre-commit hooks, and configurable exit codes. It supports custom YARA rules, threat taxonomies, and scan policies (strict/balanced/permissive), plus optional cloud integrations (VirusTotal, AWS Bedrock, Google Gemini, Azure OpenAI). A meta-analyzer reduces false positives, and an interactive wizard guides first-time users through CLI options.","worth_installing":"Yes, with conditions. Install if you deploy AI agent skills and want a layered, best-effort threat detection baseline. The tool is actively maintained, has low install friction, and integrates cleanly into CI/CD. However, do not rely on it as your sole security control: the documentation explicitly warns that clean scans do not guarantee safety, and human code review remains essential for high-risk deployments. Suitable for teams building or consuming OpenAI Codex or Cursor Agent skills who need automated early warning."},"id":"cisco-ai-skill-scanner","links":{"html":"https://skillfed.io/packages/cisco-ai-skill-scanner","md":"https://skillfed.io/packages/cisco-ai-skill-scanner.md","pypi":"https://pypi.org/project/cisco-ai-skill-scanner/"},"maintenance":{"status":"active"},"meta":{"latest_release":"2026-08-03","license_spdx":null,"license_treatment":"permissive","name":"cisco-ai-skill-scanner","python_support":"supports_current","summary":"Security scanner for Agent Skills packages - Detects prompt injection, data exfiltration, and malicious code"},"popularity":{"monthly_downloads":295264,"position":7926,"tier":"top_15000"},"security":{"n_vulnerabilities":0},"version":"2.0.13"}
