Project overview
TAR Engine's audit layer discovers and checks SKILL.md files, Codex skill definitions, Claude commands, OpenCode configs, and adjacent helper scripts from the CLI, CI, or an MCP-compatible agent. Static rules run by default; semantic and adversarial analysis requires an explicitly supplied model key. The hosted mode sends submitted skill text to tarai.dev, so sensitive material can use the self-hosted backend instead.
Repository facts
- Primary language
- Python
- License
- Apache-2.0
- Repository updated
- Jul 4, 2026
- Default branch
- master
Resource types
CLI appMCP server
Use cases
Security and privacy
Runtime
Command line
Protocols & integrations
Model Context Protocol
Capabilities
Verification and evals