Search
Security · By Tencent
Skills
Sort:BestMost starsTrending todayTrending this weekTrending this monthNewestRecently updatedName
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 1 | Probes an AI agent through dialogue for cross-user data access, privilege escalation and login bypass, and reports confirmed findings as structured vulnerability entries. | Tencent/ | 6.8k | — | ~753 | Automated safety check: Pass | Apache-2.0 | yesterday |
| 2 | Probes an AI agent through dialogue to check whether its file, code-execution or network tools can be misused to run unexpected code or reach outside targets. | Tencent/ | 6.8k | — | ~1.5k | Automated safety check: Notes | Apache-2.0 | yesterday |
| 3 | Probes whether an agent with web fetch and stored user memory can be tricked by a malicious page into leaking data through chained URL paths. | Tencent/ | 6.8k | — | ~1.8k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 4 | Probes whether an agent can be hijacked by instructions hidden in documents, retrieved chunks or fetched web pages, using test prompts that embed a hidden instruction. | Tencent/ | 6.8k | — | ~1.1k | Automated safety check: Warn | Apache-2.0 | yesterday |
| 5 | Runs a security health check on an OpenClaw environment and audits skills before or after installation for supply-chain and data-leak risks. | Tencent/ | 6.8k | — | ~9.5k | Automated safety check: Pass | MIT | yesterday |
| 6 | Probes an AI agent for supply-chain weaknesses: whether it loads untrusted plugins, tools or models, updates dependencies without pinning, or trusts user-supplied artifacts. | Tencent/ | 6.8k | — | ~760 | Automated safety check: Pass | Apache-2.0 | yesterday |
| 7 | Detect error propagation, chain failures, and single-point breakdowns that cascade across agent workflows. | Tencent/ | 6.8k | — | ~593 | Automated safety check: Pass | Apache-2.0 | yesterday |
| 8 | Tests a target AI agent for sensitive information disclosure, such as its system prompt, credentials, personal data and internal configuration, using escalating dialogue probes. | Tencent/ | 6.8k | — | ~954 | Automated safety check: Pass | Apache-2.0 | yesterday |
| 9 | Detect unsafe file handling and path traversal in upload/save/extract flows. | Tencent/ | 6.8k | — | ~789 | Automated safety check: Pass | Apache-2.0 | yesterday |
| 10 | Detect data leakage, missing boundaries, or privilege mismatch in inter-agent communication. | Tencent/ | 6.8k | — | ~660 | Automated safety check: Pass | Apache-2.0 | yesterday |
| 11 | Detect persistent instruction injection or long-term memory poisoning. | Tencent/ | 6.8k | — | ~791 | Automated safety check: Pass | Apache-2.0 | yesterday |
| 12 | Detect direct prompt injection or instruction override via user message (no external content). | Tencent/ | 6.8k | — | ~629 | Automated safety check: Warn | Apache-2.0 | yesterday |