prism-scanner
Scan AI skills, plugins, and MCP servers for suspicious files before use.
Scan AI skills, plugins, and MCP servers for suspicious files before use.
Prism Scanner applies static detection rules to agent skills, plugin folders, MCP servers, and Python projects, reporting the matched file, rule, reason, and location. It is intended as a pre-install review aid for third-party tools and can run as a Windows application or Python package. A match is a prompt for human inspection, not proof that a file is malicious.
Resource types
Use cases
Operating systems
Runtime
Scan agent skills for malicious instructions, unsafe code, and supply-chain risks
Scan local agents, MCP servers, and skills for security risks.
Public GitHub facts last synced Jul 10, 2026.
Audit agent skills for commands, network access, secrets, and tools without executing them.
Scan Claude Skills for risky network, file, command, and injection patterns.