awesome-agent-skills-security — security grade SAFE, quality 57/100

Security audit verdict: SAFE · quality 57/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by LLMSecurity · MCP Server · ★ 101

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is awesome-agent-skills-security safe to install? View the security audit →

About awesome-agent-skills-security

Awesome Agent Skills Security 🛡️ A curated list of resources on securing AI agent tool use and skill ecosystems — attacks, defenses, frameworks, benchmarks, and standards. AI agents increasingly use external tools, plugins, and skills to interact with the world. This creates a new attack surface: agent skills security. This list covers the threats, defenses, and research landscape for securing these capabilities. Contents Threat Frameworks & Standards Surveys & Systematizations Attack Research Prompt Injection via Tools Tool Poisoning & Supply Chain Privilege Escalation & Excessive Agency Data Exfiltration & Privacy Indirect Prompt Injection Cross-Plugin Attacks Backdoor Attacks on Agents Agent Deception & Manipulation Jailbreaking & Guardrail Bypass Defense Research Permission & Access Control Runtime Monitoring & Sandboxing Input/Output Validation [Formal V

agent-securityai-safetyawesome-listllm-securitymcpowaspprompt-injectiontool-use

Quick Facts

Stars101
Forks66
CategoryMCP Server
Quality Score57.4708172657435/100
Open Issues4
Last Updated2026-09-22
Created2026-03-09
Platformsmcp
Est. Tokens~28k

awesome-agent-skills-security alternative? Top 6 similar tools

Looking for a awesome-agent-skills-security alternative? If you're comparing awesome-agent-skills-security with other mcp server tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • agent-security-scanner-mcp by sinewaveai · ⭐ 121

    Security scanner MCP server for AI coding agents. Prompt injection firewall, package hallucination detection (

  • agent-threat-rules by Agent-Threat-Rule · ⭐ 399

    Open detection-rule standard for AI agent security threats — like Sigma, but for AI agents. Executable, testab

  • agent-audit by HeadyZhang · ⭐ 229

    Static security scanner for LLM agents — prompt injection, MCP config auditing, taint analysis. 51 rules mappe

  • agentseal by AgentSeal · ⭐ 156

    Security toolkit for AI agents. Scan your machine for dangerous skills and MCP configs, monitor for supply cha

  • template-repo by AndrewAltimit · ⭐ 131

    Agent orchestration & security template featuring MCP tool building, agent2agent workflows, mechanistic interp

  • rampart by peg · ⭐ 83

    Open-source firewall for AI agents. Policy engine that audits and controls what OpenClaw, Claude Code, Cursor,

More MCP Server Tools

Explore other popular mcp server tools:

View all MCP Server tools →

Frequently Asked Questions

What is awesome-agent-skills-security?

awesome-agent-skills-security is 🛡️ A curated list of resources on agent skills security: attacks, defenses, frameworks, and benchmarks for securing AI agent tool use and skill ecosystems. It is categorized as a MCP Server with 101 GitHub stars.

How do I install or use awesome-agent-skills-security?

You can find installation instructions and usage details in the awesome-agent-skills-security GitHub repository at github.com/LLMSecurity/awesome-agent-skills-security. The project has 101 stars and 66 forks, indicating an active community.

What are the best alternatives to awesome-agent-skills-security?

The top alternatives to awesome-agent-skills-security on Agent Skills Hub include agent-security-scanner-mcp, agent-threat-rules, agent-audit. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse MCP Server tools