Scans SKILL.md files, hooks, and scripts for attack patterns through a stdio MCP tool.
Copy the AI prompt to install this server into Claude Code, Cursor, or another agent โ or use 1-click editor setup below.
We haven't yet run this listing's install command through our automated sandbox check. This isn't a red flag โ we're steadily working through the catalog.
๐ก Paste the JSON block into your client's configuration file under mcpServers, then restart the application.
Inspect callable tools, capabilities, and parameters exposed to AI agents by Skillguard.
The skillguard MCP server brings SkillGuard's local security scanner into an agent workflow. It examines a skill directory containing a SKILL.md file and related hooks or scripts, then reports findings with rule identifiers, severity information, and file-and-line citations. The scanner checks for ten documented categories of attack patterns, including network mismatches, remote code execution, file-scope escalation, hook supply-chain risks, obfuscated payloads, credential harvesting, frontmatter-scope spoofing, embedded prompt injection, cross-skill privilege chaining, and marketplace typosquatting.
The MCP interface is intended for checking a skill before an agent installs or executes it. SkillGuard does not need an account, API token, or scan-time network connection. Its rule packs and pattern-matching engine are included in the package.
Run the package's mcp command to start a stdio MCP server. An MCP-compatible client can then discover and call the exposed scan_skill tool. The scan operates on local content rather than executing the skill. Results identify detected patterns and can be used by the calling agent to decide whether to continue.
The same project also provides command-line and library interfaces. The CLI supports scan for one skill and scan-set for a directory whose immediate children are skill directories. The set operation adds cross-skill analysis, which can identify combinations such as one skill reading sensitive files while another provides network egress. CLI output can be human-readable, JSON, or SARIF, with severity thresholds and timeout settings.
Install the JavaScript package with npm install --save-dev skillguard-cli, then start the MCP process with:
No environment variables, account, or API token are required. The package includes its rule packs, so scanning does not fetch rules or submit scanned content to a remote service. Configure the MCP client to launch the command as a stdio server, then provide a local skill path when calling scan_skill.
For direct CLI use, npx skillguard-cli scan ./my-skill scans one directory. The Python distribution, installed with pip install skillguard-cli, provides a separate implementation with matching rule-pack behavior and library functions.
scan_skill scans a local skill directory through MCP.scan checks one skill from the command line.scan-set checks multiple skills and evaluates cross-skill privilege combinations.The MCP command documented in the repository exposes scan_skill; the multi-skill scan-set operation is documented for the CLI and library interfaces. A clean scan returns exit code 0, while a finding at or above the selected severity threshold returns exit code 1. A missing path, or a single-skill scan with no skill files, returns exit code 2. Inline suppressions are disabled by default, and suppression files must be passed explicitly rather than being loaded automatically from the scan target.
Factual signals from GitHub, npm, and our automated checks โ not a rating.
No reviews yet โ be the first to share how this listing worked for you.
Showcase your server listing on GitHub or your project documentation. Embed this dynamic SVG badge to highlight official listing status and live engagement.
[](https://allmcps.com/mcp/skillguard)<a href="https://allmcps.com/mcp/skillguard"><img src="https://allmcps.com/api/badge/skillguard?style=directory" alt="Skillguard on AllMCPs" /></a>