Project overview
This command-line scanner reviews third-party Claude Skills before installation for suspicious network access, sensitive file operations, dangerous commands, dynamic execution, and injection patterns. It can produce HTML, console, or JSON reports and supports custom rules and allowlists, while performing static analysis without executing the skill code. Its findings are a review aid rather than a guarantee that every security risk will be detected.
Repository facts
- Primary language
- Python
- License
- MIT
- Repository updated
- Jul 11, 2026
- Default branch
- main
Resource types
CLI app
Use cases
Security and privacy
Operating systems
LinuxmacOSWindows
Runtime
Command line