NVIDIA open-sources SkillSpector to scan AI agent skills for malicious code
dr_cintas · x · 2026-07-23
- NVIDIA’s SkillSpector is a free security scanner for AI agent skills used by tools like Claude Code, Codex CLI, and Gemini CLI.
- The pitch is simple: skills run with broad access, so a convenient skill can also leak secrets or introduce malicious behavior.
- SkillSpector can scan Git repos, URLs, zip files, directories, or single files, then produces a risk score from 0–100 with a verdict such as safe, caution, or do not install.
- It combines fast static analysis with an optional LLM-based semantic pass, checks live vulnerabilities via OSV.dev, and exports terminal/JSON/Markdown/SARIF reports.
- The repo claims coverage of 68 vulnerability patterns across 17 categories, including prompt injection, data exfiltration, privilege escalation, system prompt leakage, memory poisoning, MCP tool poisoning, and dangerous code.
- The screenshot also cites research saying 26.1% of skills contain vulnerabilities and 5.2% show likely malicious intent.
Related event: NVIDIA Open-Sources SkillSpector for AI Agent Security(3 posts)→
More from coding & agent
- HeyGen’s HyperFrames adds a storyboard-first workflow for AI video generation — HeyGen · 2026-07-23
- W&B adds stronger agent tracing, harness integrations and automated evals in Weave — _ScottCondron · 2026-07-23
- Claude Managed Agents adds effort levels, sub-agent streaming and session seeding — EricBuess · 2026-07-23
- AI Autopilot Drives Open-Source Maintenance: Running Hourly to Triage PRs — jiayuan_jy · 2026-07-23
- Embodied Agent Eval: Two Scenes Hit 100% Zero-Shot Success Rate — wandb · 2026-07-23
- A high-school builder’s “Taste Skill” for AI frontend design hits 67,000 stars — soumitrashukla9 · 2026-07-23