SkillScan
PulseGate's liveness check found it on 14 Sep 2026; it is registered on GitHub and PyPI and has been in the index since 16 Jun 2026. How this is checked
SkillScan was a free, local, and private scanner designed to detect security issues in AI agent skill files. The tool operated without requiring a GPU, incurred no per-scan fees, and did not require users to send their files to a company, emphasizing privacy and local analysis. Its approach involved static analysis and the use of pattern rules or a lightweight classifier to identify potentially malicious behaviors or instructions within skill files.
Inferred · not functionally tested
Overview
6 featuresPurpose: Detecting security vulnerabilities and malicious patterns in AI agent skill files before deployment.
Inferred · not functionally tested
Audience: ai developers
Inferred · not functionally tested
Functions: monitoring
Inferred · not functionally tested
Interfaces: API: unknown · MCP: unknown · CLI: indicated (inferred, not tested) · Self-hosting: indicated (inferred, not tested)
Recorded constraints: pricing: open_source · license: Apache-2.0 · platforms: CLI · deployment: cli, self_hosted
Constraint provenance is unknown; confirm requirements with the publisher.
Record sources: skillscan.sh · github.com. These links do not verify the individual claims.
SkillScan is an AI security & guardrails project. Inferred · not functionally tested: It focuses on detecting security vulnerabilities and malicious patterns in AI agent skill files before deployment. Inferred · not functionally tested: SkillScan is an open-source project aimed at ai developers. Basis unknown · not verified: The project is open source (Apache-2.0). Basis unknown · not verified: SkillScan is available on the command line, and it can be self-hosted.
SkillScan first shipped in 2026. The project is developed in the open on GitHub with 13 commits in the last 90 days. Inferred · not functionally tested: Key capabilities include static analysis, malicious pattern detection, and prompt injection detection.
Summary written by a language model from the project’s public pages.
Tasks: Inferred · not functionally tested
- Static analysis
- Malicious pattern detection
- Prompt injection detection
- Data exfiltration checks
- Container escape detection
- CI/CD integration
Topics: Inferred · not functionally tested
Built with & integrations
- Cloudflare
- cf-ray header · cf-cache-status header
Trust & compliance
Indexing history
What PulseGate has recorded for this listing
Frequently asked questions about SkillScan
- What is SkillScan?
- Inferred · not functionally tested: SkillScan focuses on detecting security vulnerabilities and malicious patterns in AI agent skill files before deployment. It is catalogued under AI security & guardrails on PulseGate.
- Who should use SkillScan?
- Inferred · not functionally tested: SkillScan is an open-source project built for ai developers.
- Does SkillScan have a free plan?
- Basis unknown · not verified: Yes — SkillScan is open source under the Apache-2.0 license and free to use.
- What platforms does SkillScan run on?
- Basis unknown · not verified: SkillScan runs on the command line. It can also be self-hosted.
- Is SkillScan still active?
- PulseGate's liveness check found it on 14 Sep 2026. Its GitHub repository shows 13 commits in the last 90 days.
- What are alternatives to SkillScan?
- Similar projects tracked by PulseGate include Agent Scan, Agent Scan, and Skills Scanner Pipeline.Agent ScanAgent ScanSkills Scanner Pipeline
- How long has SkillScan been around?
- SkillScan first shipped in 2026.
- Is SkillScan open source?
- Basis unknown · not verified: Yes — SkillScan is open source under the Apache-2.0 license, developed on GitHub.
Similar projects
Closest matches by what these projects do