No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →
by itlackey · MCP Server · ★ 59
Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h
🔒 Is akm safe to install? View the security audit →
akm — Agent Knowledge Management A package manager for AI agent capabilities — scripts, skills, commands, agents, knowledge, memories, workflows, wikis, vaults, lessons, and scheduled tasks — that works with any AI coding assistant that can run shell commands. akm gives agents a curated, searchable library built from local directories, GitHub repos, npm packages, and websites. Instead of front-loading a giant prompt, agents pull exactly what they need, when they need it, and feed results back so the library improves over time. Install Option 1 — Prebuilt binary (recommended, no runtime required): Option 2 — Bun (requires Bun = 1.0): Upgrade in place: AKM 0.8 requires the Bun runtime or the prebuilt binary. Node.js is not supported in this release. Cross-runtime compatibility is planned for 0.9.0. See Privacy & data for details on what akm stores locally.
| Stars | 59 |
| Forks | 3 |
| Language | TypeScript |
| Category | MCP Server |
| License | MPL-2.0 |
| Quality Score | 68.8304028869098/100 |
| Open Issues | 16 |
| Last Updated | 2026-09-11 |
| Created | 2026-03-06 |
| Platforms | claude-code, cli, mcp, node |
| Est. Tokens | ~16k |
These tools work well together with akm for enhanced workflows:
Looking for a akm alternative? If you're comparing akm with other mcp server tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.
One-stop shop for AI skills and agents. Search 110K+ community skills, install and track them declaratively, a
A unified CLI for discovering and invoking tools across OpenAPI, MCP, GraphQL, gRPC, and JSON-RPC
Outcome-based persistent memory MCP server for Claude Code and OpenCode. Good advice promoted, bad advice demo
DeepContext is an MCP server that adds symbol-aware semantic search to Claude Code, Codex CLI, and other agent
Server-enforced workflow discipline for AI agents. An MCP server providing persistent work items, dependency g
Just another desktop client for OpenCode 2. Manage projects, sessions, parallel agents, requests, and changes
Explore other popular mcp server tools:
akm is Agent Knowledge Manager (akm). A CLI tool to manage AI agent knowledge, memories, skills, and more.. It is categorized as a MCP Server with 59 GitHub stars.
akm is primarily written in TypeScript. It covers topics such as agent-kit-manager, agent-tools, ai-agents.
You can find installation instructions and usage details in the akm GitHub repository at github.com/itlackey/akm. The project has 59 stars and 3 forks, indicating an active community.
akm is released under the MPL-2.0 license, making it free to use and modify according to the license terms.
The top alternatives to akm on Agent Skills Hub include skillfile, uxc, roampal-core. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.
Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.
The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.
Sources & who's responsible: