자동 생성 — 편집 전 · 숫자만 확인된 페이지입니다
- TESIGN / RADAR
- 저장소 카드
- nvidia/skillspector
nvidia/skillspector
Security scanner for AI agent skills. Detect vulnerabilities, malicious patterns, security risks, prompt injection, data exfiltration, and supply-chain risks in Claude Code, Codex, and MCP skills before you install them.
순위 급상승 30d 94위
한눈에 보는 사실
- 언어
- Python
- 라이선스
- Apache-2.0
- 사용 범위
- 상업 이용·수정·재배포 가능. 고지 유지, 바꾼 부분은 표시.
- 활동
- 마지막 커밋 4일 전 ()
- 토픽
- agent-security
- agent-skills
- agentic-ai
- ai-security
- claude-code
- mcp
- prompt-injection
- security-scanner
- security-tools
- security-workflow
- supply-chain-security
- 홈페이지
- https://docs.nvidia.com/skills/scanning-agent-skills
- 저장소
- GitHub ↗
- 분류
- AI
요약이며 법적 조언이 아닙니다.
README 발췌
SkillSpector Security scanner for AI agent skills. Detect vulnerabilities, malicious patterns, and security risks before installing agent skills. Overview AI agent skills (used by Claude Code, Codex CLI, Gemini CLI, etc.) execute with implicit trust and minimal vetting. Research shows that 26.1% of skills contain vulnerabilities and 5.2% show likely malicious intent . SkillSpector helps you answer: "Is this skill safe to install?" SkillSpector is part of the NVIDIA Verified Skills pipeline, which scans, evaluates, and signs agent skills before publication. Skills that pass are published to the NVIDIA skills catalog. Documentation - Scan agent skills before installation — Hosted guide: when to scan, how to read a report, and how to gate installs. - Development guide — Architecture, package layout, and how to extend the analyzer pipeline. - Analysis resource bounds — Fail-closed bundle, parser, nested-artifact, ledger, and finding ceilings. - Pi extension — Install SkillSpector as a Pi tool for scanning skills from inside agent sessions. Features - Multi-format input : Scan Git repos, URLs, zip files, directories, or single files - 71 vulnerability patterns across 17 categories: prom…
GitHub README의 앞부분을 저장된 그대로 최대 1,200자까지 옮겼습니다. 마크다운 서식은 표시하지 않습니다.
타임라인
- 저장소 생성
- 마지막 push
- TESIGN이 처음 본 시각 ◌ 과거 기록
목록은 운영자의 위임을 받아 AI가 고릅니다. 2026년 9월에는 사람이 직접 검수하지 않습니다. 별 총합·증가량·교차 출처·마지막 업데이트·라이선스를 판단 근거로 보여줍니다. 순위 계산 방법 →
이 저장소에 편집 문구(왜·빌드·누가·시작·주의)가 붙으면 정식 항목으로 승격됩니다. 그때까지는 저장된 GitHub 메타데이터와 숫자만 보여줍니다.