Scan AI agent skills and configs for hidden Unicode, prompt injection and exfiltration.
- ✓Open-source license (MIT)
- ✓Actively maintained (<30d)
- ✓Clear description
- ✓Documented (README)
- !Install pipes a remote script into a shell (curl | sh)
git clone https://github.com/tylerscomic-lab/agent-skill-audit-mcp{
"mcpServers": {
"agent-skill-audit-mcp": {
"command": "node",
"args": ["/path/to/agent-skill-audit-mcp/dist/index.js"]
}
}
}MCP Servers overview
# Agent Skill & Config Security Audit Security scanner for AI agent skills and config files (SKILL.md, CLAUDE.md, AGENTS.md, .mcp.json, settings.json). Finds hidden Unicode instructions, prompt injection, exfiltration commands and over-broad permissions before you install a skill. ## Scan a skill before you install it Agent skills and instruction files are read straight into your agent's context, and some ship scripts it can run. Research on public skill registries has found prompt injection and credential-stealing payloads in a large share of them. Installing a third-party skill is closer to adding a dependency than opening a document, and nothing scans them. This does. ## What it catches - **Hidden Unicode instructions**: invisible "tag" characters that render as blank but that models can read, plus zero-width and bidi control characters. The hidden message is decoded for you. - **Prompt injection**: "ignore previous instructions", "do not tell the user", fake system messages, approval bypasses. - **Download-and-execute and obfuscation**: `curl | bash`, base64-decode-and-run, large encoded blobs. - **Exfiltration shapes**: network commands that reference env vars or credential files, request-catcher and tunnel hosts, sensitive paths like `~/.ssh` and `.aws/credentials`. - **Over-broad permissions**: unrestricted `Bash` in allowed-tools, `Bash(*)` pre-approvals, bypassed permissions. - **Risky agent configs**: unpinned `@latest` MCP servers, inline secrets, plaintext remote servers, hooks that make network calls, API base-URL overrides, auto-trusted project MCP servers. ## Tools - `audit_skill_file`: scan SKILL.md, CLAUDE.md, AGENTS.md, .cursorrules or a bundled script. - `audit_agent_config`: audit .mcp.json or .claude/settings.json. - `reveal_hidden_text`: find and decode invisible characters in any text, and return a cleaned copy. Static analysis only. Nothing in your input is executed or fetched. A clean result is not a guarantee, so read bundled scripts too. ## Use it Hosted on [MCPize](https://mcpize.com/mcp/agent-skill-audit-mcp) with a free tier (10 calls a day). Remote MCP endpoint (streamable HTTP, API key from MCPize): ``` https://agent-skill-audit-mcp.mcpize.run/mcp ``` Or run it yourself: ```bash npm install node server.js # listens on :8080, MCP at /mcp ``` MIT licensed.
What people ask about agent-skill-audit-mcp
What is tylerscomic-lab/agent-skill-audit-mcp?
+
tylerscomic-lab/agent-skill-audit-mcp is mcp servers for the Claude AI ecosystem. Scan AI agent skills and configs for hidden Unicode, prompt injection and exfiltration. It has 0 GitHub stars and its last recorded update is dated 2026-10-01.
How do I install agent-skill-audit-mcp?
+
You can install agent-skill-audit-mcp by cloning the repository (https://github.com/tylerscomic-lab/agent-skill-audit-mcp) or following the README instructions on GitHub. ClaudeWave also provides quick install blocks on this page.
Is tylerscomic-lab/agent-skill-audit-mcp safe to use?
+
Our security agent has analyzed tylerscomic-lab/agent-skill-audit-mcp and assigned a Trust Score of 79/100 (tier: Trusted). See the full breakdown of passed checks and flags on this page.
Who maintains tylerscomic-lab/agent-skill-audit-mcp?
+
tylerscomic-lab/agent-skill-audit-mcp is maintained by tylerscomic-lab. The last recorded GitHub activity is dated 2026-10-01, with 0 open issues.
Are there alternatives to agent-skill-audit-mcp?
+
Yes. On ClaudeWave you can browse similar mcp servers at /categories/mcp, sorted by popularity or recent activity.
Deploy agent-skill-audit-mcp to your cloud
Ship this repo to production in minutes. Each platform spins up its own environment with editable env vars.
Maintain this repo? Add a badge to your README
Drop the badge into your GitHub README to show it's tracked on ClaudeWave. Each badge links back to this page and reflects the live Trust Score.
[](https://claudewave.com/repo/tylerscomic-lab-agent-skill-audit-mcp)<a href="https://claudewave.com/repo/tylerscomic-lab-agent-skill-audit-mcp"><img src="https://claudewave.com/api/badge/tylerscomic-lab-agent-skill-audit-mcp" alt="Featured on ClaudeWave: tylerscomic-lab/agent-skill-audit-mcp" width="320" height="64" /></a>More MCP Servers
Fair-code workflow automation platform with native AI capabilities. Combine visual building with custom code, self-host or cloud, 400+ integrations.
User-friendly AI Interface (Supports Ollama, OpenAI API, ...)
An open-source AI agent that brings the power of Gemini directly into your terminal.
Real-time global intelligence dashboard. AI-powered news aggregation, geopolitical monitoring, and infrastructure tracking in a unified situational awareness interface
🕷️ An adaptive Web Scraping framework that handles everything from a single request to a full-scale crawl! Don't be shy, join here: https://discord.gg/EMgGbDceNQ and follow here for daily tips and tricks: https://x.com/Scrapling_dev
The fastest path to AI-powered full stack observability, even for lean teams.