If you're installing Agent Skills or MCP servers from third parties, there's no built-in way to check them before they run in your agent's context. I built a scanner for exactly that. npx secureai-scan@latest skill <owner/repo> # check a Claude Skill npx
Detailed Analysis
Detailed analysis coming soon.
Read original article →