No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →
by dog-qiuqiu · Codex Skill · ★ 153
Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h
🔒 Is invincat safe to install? View the security audit →
Invincat Invincat is a terminal-native AI coding assistant for local repositories. It can inspect and edit files, run shell commands with approval, use web/MCP tools, keep long-term memory, plan before execution, run scheduled tasks, and bridge remote WeCom messages into a project session. Features Work directly from your project directory in a terminal UI. Read, edit, and create files with approval-gated tool execution. Run shell commands under configurable safety controls. Use to review and approve an execution plan before implementation. Keep user and project memory across sessions. Create recurring or one-shot scheduled tasks in natural language. Extend capabilities through MCP tools, skills, and WeCom bot daemon integration. Quick Start bash pip install invincat-cli cd /p
| Stars | 153 |
| Forks | 15 |
| Language | Python |
| Category | Codex Skill |
| License | MIT |
| Quality Score | 66.8534602544187/100 |
| Last Updated | 2026-05-26 |
| Created | 2026-04-16 |
| Platforms | claude-code, cli, codex, gemini, python |
| Est. Tokens | ~933k |
These tools work well together with invincat for enhanced workflows:
Looking for a invincat alternative? If you're comparing invincat with other codex skill tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.
Unified LLM gateway with weighted load balancing, observability & cost tracking. 统一的 LLM 网关,提供权重负载均衡、可观测性与费用追踪
An introduction to the world of AI Agents
🧑🎨 A collection of agentic skills that works
Evo AI is an open-source platform for creating and managing AI agents, enabling integration with different AI
WorkflowAI is an open-source platform where product and engineering teams collaborate to build and iterate on
An autonomous HR agent that can answer user queries using tools
Explore other popular codex skill tools:
invincat is A native Python agent CLI built on DeepAgents CLI, featuring an independent memory Agent that captures learnings after each task and delivers efficient AI coding assistance through hierarchical memory. It is categorized as a Codex Skill with 153 GitHub stars.
invincat is primarily written in Python. It covers topics such as agent, agent-skills, agentic-ai.
You can find installation instructions and usage details in the invincat GitHub repository at github.com/dog-qiuqiu/invincat. The project has 153 stars and 15 forks, indicating an active community.
invincat is released under the MIT license, making it free to use and modify according to the license terms.
The top alternatives to invincat on Agent Skills Hub include llmio, oreilly-ai-agents, cc-skills. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.
Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.
The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.
Sources & who's responsible: