
Skill Check Skill
Scan GitHub skill repos for malicious code, destructive commands, and data-exfiltration patterns before installing.
Overview
skill-check-skill is a security guardrail that scans GitHub repositories for malicious code, destructive commands, and data-exfiltration patterns, recursively analyzing referenced scripts to catch threats hidden behind the main skill file. A user runs it before adding any new skill or tool.
Install
npx skills add https://github.com/f4ah6o/skills-bonsai --skill skill-check-skillWhat is this skill?
- Scans GitHub skill repos
- Detects destructive commands
- Recursively analyzes referenced scripts
- Pre-install safety guardrail
Recommended Skills
Azure Compliancemicrosoft/azure-skills
Openclaw Secure Linux Cloudxixu-me/skills
Entra Agent Idmicrosoft/azure-skills
Firebase Security Rules Auditorfirebase/agent-skills
Firestore Security Rules Auditorfirebase/agent-skills
Skill Vetteruseai-pro/openclaw-skills-security