SkillSpector is a security scanner designed to detect vulnerabilities, malicious patterns, and security risks in AI agent skills before they are installed.
It performs a two-stage analysis using fast static checks and optional LLM-based semantic evaluation to provide a risk score and actionable recommendations.
- 01
Two-stage analysis pipeline combining static analysis with optional LLM semantic evaluation
- 02
Detection of 71 vulnerability patterns across 17 categories including prompt injection and supply-chain risks
- 03
Live vulnerability lookups for dependencies via OSV.dev with offline fallback
- 04
Multi-format output support including Terminal, JSON, Markdown, and SARIF
- 05
Model Context Protocol (MCP) server mode for automated install-time gating
Open Source
Available as an open-source tool under the Apache License 2.0; usage of the optional LLM semantic analysis pass may incur costs depending on the configured third-party inference provider.
Best for
Integrating into CI/CD pipelines or agent installation workflows to automatically gate the installation of untrusted AI agent skills based on security risk scores.
Not ideal for
Detecting sophisticated, payload-preserving evasion attacks that reconstruct malicious behavior at runtime, or analyzing encrypted, binary, or image-based content.
A robust, essential defense-in-depth tool for auditing AI agent skills, though it should be used as part of a broader security strategy that includes runtime sandboxing and least-privilege access controls.
Version 2.11.1 (September 2026) and 2.10.0 (August 2026) introduced transitive reference scanning, support for structured skill bundles (AISOP/AISP), improved inspection of nested artifacts, and enhanced policy-gate controls.
As of
Is SkillSpector free?+
Yes - SkillSpector is Open Source. Available as an open-source tool under the Apache License 2.0; usage of the optional LLM semantic analysis pass may incur costs depending on the configured third-party inference provider.
Is SkillSpector open source?+
Yes - SkillSpector is open source. Available as an open-source tool under the Apache License 2.0; usage of the optional LLM semantic analysis pass may incur costs depending on the configured third-party inference provider.
Who is SkillSpector best for?+
Integrating into CI/CD pipelines or agent installation workflows to automatically gate the installation of untrusted AI agent skills based on security risk scores.
Who is SkillSpector not ideal for?+
Detecting sophisticated, payload-preserving evasion attacks that reconstruct malicious behavior at runtime, or analyzing encrypted, binary, or image-based content.
What are the best SkillSpector alternatives?+
The closest SkillSpector alternatives on ai.dosa.dev are CodeRabbit, Qodo, Snyk Code - all listed under AI Code Review & Security.
Who makes SkillSpector?+
SkillSpector is developed by NVIDIA. It is listed in the AI Code Review & Security category on ai.dosa.dev.
Favorite this tool to revisit it later, or Zap it to contribute to the public vote count.