$npx skillfedfor your agent

plugin-scanner

Lint, verify, and gate plugin ecosystems for maintainers, CI, and publish workflows.

Worth itPyPI SecurityReleased Jul 2026165.4K downloads / moApache-2.0Pure Python

Decision gist · record as of 2026-08-14

pure-Python wheel — plugin_scanner-2.0.1116-py3-none-any.whl
v2.0.1116 · released 2026-07-18 · Python >=3.10 · 8 runtime deps: cisco-ai-skill-scanner, cryptography, keyring, mcp, packaging, requests, rich, tomli

Yes. plugin-scanner is a focused, actively maintained CI tool for pre-release security analysis of AI agent ecosystem packages. It has low install friction, permissive licensing, no known vulnerabilities, and fills a specific maintainer/CI role complementary to runtime protection. Install it if you maintain plugins, skills, or MCP servers and want automated security gating before release.AI-flagged interpretation of the facts on this page — verify before relying

Before you install

  • Requires Python 3.10 or later.
  • Low install friction with a pure-Python wheel and eight runtime dependencies.
  • Active maintenance with a recent release (27 days old) and steady repository activity.

License · maintenance · safety

Apache-2.0 (permissive) — Apache-2.0 permissive license allows commercial and private use with minimal restrictions.

last release 2026-07-18 (27 days) · last repo commit 2026-08-14 · 434 stars

0 known vulnerabilities (OSV.dev, 2026-08-14) · 165,354 downloads/mo, #10,524 on PyPI

Verify before relying

pip install plugin-scanner
plugin-scanner verify .
plugin-scanner supply-chain scan
  • Whether plugin-scanner can be used standalone or requires hol-guard to be installed for full functionality.
  • Exact scope of supported package ecosystems beyond plugins, skills, and MCP servers.
  • Whether supply-chain scanning requires network access or can run fully offline.
Same gist for agents: .md · .json

What it is and what it does

plugin-scanner is a linting and verification tool designed for maintainers and CI workflows to analyze plugins, skills, MCP servers, and marketplace packages before release. It evaluates supported artifacts for security risks including secret exposure, prompt injection, unsafe commands, and malicious package patterns—the same threat surface that the broader HOL Guard runtime protection addresses, but at the pre-release stage rather than at execution time.

The tool integrates into CI pipelines and publish workflows to gate ecosystem packages with structured rule metadata and side-effect-free analysis. It depends on eight runtime packages including cryptography, keyring, requests, and rich for output formatting. It is actively maintained, supports Python 3.10 through 3.14, and carries no known vulnerabilities.

Use it for

  • Gate plugin and skill releases in CI by running `plugin-scanner verify` before publishing to a marketplace.
  • Scan third-party MCP server packages for supply-chain risks before integrating them into an AI agent environment.
  • Lint custom agent plugins and extensions to detect secret exposure or unsafe patterns before committing to a repository.
  • Automate pre-release security checks for npm, PyPI, or other package ecosystems using supply-chain scanning.
  • Explain specific package vulnerabilities or risk signals for a given package version and ecosystem.

Worth the install?

AI-flagged interpretation of the facts on this page. Verify before relying on it.

Worth it

Yes.

plugin-scanner is a focused, actively maintained CI tool for pre-release security analysis of AI agent ecosystem packages. It has low install friction, permissive licensing, no known vulnerabilities, and fills a specific maintainer/CI role complementary to runtime protection. Install it if you maintain plugins, skills, or MCP servers and want automated security gating before release.

Install

plugin-scanner on PyPI

Before you install

Low install friction with a pure-Python wheel and eight runtime dependencies. Active maintenance with a recent release (27 days old) and steady repository activity.

Requires Python 3.10 or later.

License in practice

Apache-2.0 permissive license allows commercial and private use with minimal restrictions.

Quickstart

pip install plugin-scanner
plugin-scanner verify .
plugin-scanner supply-chain scan

Verify before relying

  • Whether plugin-scanner can be used standalone or requires hol-guard to be installed for full functionality.
  • Exact scope of supported package ecosystems beyond plugins, skills, and MCP servers.
  • Whether supply-chain scanning requires network access or can run fully offline.

Package facts

LicenseApache-2.0 permissive
Python supportSupports the current Python release >=3.10
Install frictionLow. Pure-Python wheel
Runtime dependencies
8 packages
cisco-ai-skill-scannercryptographykeyringmcppackagingrequestsrichtomli
MaintenanceActively maintained 27 days since the last release
Last repo commit
First released
Downloads165,354 / month, #10,524 on PyPI 30-day window, as of 2026-08-14
Known vulnerabilitiesNone known OSV.dev, checked 2026-08-14
Classifiers
Development Status :: 5 - Production/StableEnvironment :: ConsoleIntended Audience :: DevelopersLicense :: OSI Approved :: Apache Software LicenseProgramming Language :: Python :: 3Programming Language :: Python :: 3.10Programming Language :: Python :: 3.11Programming Language :: Python :: 3.12Programming Language :: Python :: 3.13Programming Language :: Python :: 3.14Topic :: SecurityTopic :: Software Development :: Quality Assurance

Evidence: plugin_scanner-2.0.1116-py3-none-any.whl

Tags

Capabilities
plugin security scanningmcp server verificationai agent package lintingsupply chain security cipre-release package analysisplugin ecosystem gatingai skill verification
Topics
ai-agent-securitysupply-chain-gatingci-integration
PyPI keywords
ai agent securityai agentsai antivirusclaudeclicodexcursorgeminimcp securityopencodeplugin securityprompt injectionruntime securitysecrets detectionsupply chain security

Let your AI agent find packages like this

Example. Real query, live index.

You found this page by searching. An agent finds it by wishing: SkillFed indexes 14,416 PyPI packages by what they can do, searchable in plain language.

wish › “plugin security scanning”

  • plugin-scannerLints, verifies, and gates plugins, skills, MCP servers, and packages…
  • extractcode-7zProvides a prebuilt native 7z binary as a ScanCode plugin for…
  • colcon-recursive-crawlA colcon-core extension that recursively crawls directory trees to…

Give your agent the search over MCP, or paste the wish link into any chat.

More Security packages

SecretStorage With conditions
PyPI · Python Modules · released Nov 2025

Provides Python bindings to the FreeDesktop.org Secret Service API for securely storing and retrieving passwords and secrets through GNOME Keyring, KWallet, or KeePassXC.

BSD-3-Clausepure Python · 3.10+aging
226.9Mdownloads / mo
msal Worth it
PyPI · Security · released May 2026

MSAL for Python handles OAuth2 and OpenID Connect authentication with Microsoft identity services, managing token acquisition, caching, and refresh for applications integrating with Microsoft Entra ID, Microsoft Accounts, and Azure AD B2C.

MITpure Python · 3.9+
223.0Mdownloads / mo
joserfc Worth it
PyPI · Security · released Jul 2026

joserfc implements JOSE standards (JWS, JWE, JWK, JWT, and related RFCs) for signing, encrypting, and managing JSON-based cryptographic tokens in Python.

BSD-3-Clausepure Python · 3.10+
155.5Mdownloads / mo
Authlib Worth it
PyPI · Security · released May 2026

Authlib provides a complete implementation of OAuth 1.0, OAuth 2.0, and OpenID Connect 1.0 for building both authentication clients and servers, with built-in support for JWS, JWK, JWA, and JWT standards.

BSD-3-Clausepure Python · 3.10+
155.1Mdownloads / mo
argon2-cffi-bindings With conditions
PyPI · Python Modules · released Jul 2025

Provides low-level CFFI bindings to the official Argon2 password hashing algorithm for use by libraries and applications that need direct access to Argon2 without higher-level abstractions.

MITcompiled wheel · 3.9+
74.2Mdownloads / mo
adal Skip
PyPI · Security · released Apr 2021

ADAL for Python authenticates applications with Azure Active Directory to obtain tokens for accessing Azure AD-protected resources.

Install only if maintaining existing code that already depends on it, and plan a migration.

MITpure Pythonabandoned
44.5Mdownloads / mo

See also hol-guard · scitex-dev · llm-guard · skillsaw · guarddog · pydantic-ai-shields · detect_agent · skylos · cpex · apm-cli

Further reading