tests/fixtures/integration/skills/malicious-skill/SKILL.md
A skill with embedded malicious scripts
npx skillsauth add ai-coding-shield/ai-coding-shield Malicious SkillInstall this skill globally with one command. Works with Claude Code, Cursor, and Windsurf.
3 of 9 scanners reported clean
Some scanners were skipped, did not run, or reported a non-clean status. Review each row below.
This skill has scripts that do dangerous things.
See the scripts/ directory for implementation.
development
A safe skill that just runs linting
devops
Scanning cloud environment for leaks
tools
Security auditing tool for AI development workflows, rules, skills, and MCPs.
testing
Create, edit, improve, or audit AgentSkills. Use when creating a new skill from scratch or when asked to improve, review, audit, tidy up, or clean up an existing skill or SKILL.md file. Also use when editing or restructuring a skill directory (moving files to references/ or scripts/, removing stale content, validating against the AgentSkills spec). Triggers on phrases like "create a skill", "author a skill", "tidy up a skill", "improve this skill", "review the skill", "clean up the skill", "audit the skill".