medusa-agent-skills — security grade SAFE, quality 75/100

Security audit verdict: SAFE · quality 75/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by medusajs · Agent Tool · ★ 225

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is medusa-agent-skills safe to install? View the security audit →

About medusa-agent-skills

Medusa Agent Skills A collection of skills composed as Claude Code plugins for building Medusa applications with best practices and architectural patterns. These skills can be used with any agent, as explained in the Usage with Other Agents section. Available Plugins Installation for Claude Code Usage Usage with Other Agents Privacy Available Plugins Installation for Claude Code Start Claude: Add the Medusa marketplace to Claude Code: Install any of the plugins. For example: Verify the plugin is loaded: You should see the Medusa plugin listed under the Installed tab. Usage with Other Agents Installation with The command allows you

agentic-commerceclaudeclaude-codecommerceecommercemedusa

Quick Facts

Stars225
Forks29
LanguageJavaScript
CategoryAgent Tool
Quality Score74.5140635644828/100
Open Issues2
Last Updated2026-10-02
Created2026-01-15
Platformsclaude-code, node
Est. Tokens~13k

Compatible Skills

These tools work well together with medusa-agent-skills for enhanced workflows:

  • lucid-agents — semantic(0.37)+complementary+rare_topics+similar_pop (47%)
  • explore-claude-code — semantic(0.16)+complementary+similar_pop+shared_platform (46%)

medusa-agent-skills alternative? Top 6 similar tools

Looking for a medusa-agent-skills alternative? If you're comparing medusa-agent-skills with other agent tool tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • claude-marketing by thatrebeccarae · ⭐ 107

    A full marketing department for Claude Code. Skill packs for Klaviyo, Shopify, GA4, Looker Studio, paid media,

  • anythingmcp by HelpCode-ai · ⭐ 779

    Open-source, self-hosted MCP gateway: turn any REST/OpenAPI, SOAP, GraphQL, OData or SQL API into MCP tools fo

  • cclsp by ktnyt · ⭐ 675

    Claude Code LSP: enhance your Claude Code experience with non-IDE dependent LSP integration.

  • claude-talk-to-figma-mcp by arinspunk · ⭐ 662

    A Model Context Protocol (MCP) that allows Claude Desktop and other AI tools (Claude Code, Cursor, Antigravity

  • vestige by samvallad33 · ⭐ 645

    The memory + security kernel for AI agents. Strata: a signed append-only log, receipts on every write, exact-h

  • Overture by SixHq · ⭐ 641

    Overture is an open-source, locally running web interface delivered as an MCP (Model Context Protocol) server

More Agent Tool Tools

Explore other popular agent tool tools:

View all Agent Tool tools →

Popular JavaScript Agent Tools

Frequently Asked Questions

What is medusa-agent-skills?

medusa-agent-skills is Agent skills and commands for Medusa best practices and conventions.. It is categorized as a Agent Tool with 225 GitHub stars.

What programming language is medusa-agent-skills written in?

medusa-agent-skills is primarily written in JavaScript. It covers topics such as agentic-commerce, claude, claude-code.

How do I install or use medusa-agent-skills?

You can find installation instructions and usage details in the medusa-agent-skills GitHub repository at github.com/medusajs/medusa-agent-skills. The project has 225 stars and 29 forks, indicating an active community.

What are the best alternatives to medusa-agent-skills?

The top alternatives to medusa-agent-skills on Agent Skills Hub include claude-marketing, anythingmcp, cclsp. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse Agent Tool tools