Topic · Security

Best prompt injection and agent security skills for Claude Code, Codex and other agents.

Skills that test and defend agents against prompt injection and unsafe skills.
skills
157
official
5

Prompt injection and agent security skills, ranked

Ranked by score. Sort bymost stars,trending,newest,recently updated

Prompt injection and agent security skills, ranked
#SkillRepositoryStarsUsed inTokensAuto-checkLicenceUpdated
1
1.Skill InspectorOfficial

Decides whether an agent skill is safe to install by combining a SkillSpector static scan with the agent's own source review, ending in APPROVE, CAUTION or REJECT.

NVIDIA/SkillSpector20k1 repo~1.8kAutomated safety check: PassApache-2.0yesterday
2
2.Skill ScannerOfficial

Scan agent skills for security issues. An agent skill from getsentry/skills.

getsentry/skills1k4 repos~2.5kAutomated safety check: WarnApache-2.05 days ago
3

Probes an AI agent through dialogue for cross-user data access, privilege escalation and login bypass, and reports confirmed findings as structured vulnerability entries.

Tencent/AI-Infra-Guard6.8k—~753Automated safety check: PassApache-2.0today
4

Cross-agent self-inspection of your AI-agent stack. An agent skill from alexgreensh/repo-forensics.

alexgreensh/repo-forensics188—~2.5kAutomated safety check: NotesUnknown11 days ago
5

Run HOL Guard scanner and guard operations via uv run hol-guard.

hashgraph-online/hol-guard815—~542Automated safety check: PassApache-2.0today
6

Investigate and harden Skylos security behavior. An agent skill from duriantaco/skylos.

duriantaco/skylos843—~545Automated safety check: PassApache-2.0today
7

Run a pre-deployment security compliance checklist based on KISA guidelines.

cdppcorp/KESE-KIT361—~1.3kAutomated safety check: PassMIT6 mo ago
8

Install or initialize HOL Guard local runtime protection for Claude Code.

hashgraph-online/hol-guard815—~443Automated safety check: PassApache-2.0today
9

Comprehensive security review framework for AI agents. An agent skill from slowmist/slowmist-agent-security.

slowmist/slowmist-agent-security508—~1.4kAutomated safety check: PassMIT5 mo ago
10

Applies the AI SAFE2 framework to security reviews, code reviews and compliance mapping for AI agents, RAG pipelines and MCP servers.

CyberStrategyInstitute/ai-safe2-framework146—~1.2kAutomated safety check: PassUnknowntoday
11

按中国法规(网安法 / PIPL / 等保2.0 / 数据出境 / AI生成内容标识)审计一个 AI 项目的代码仓库,产出每条都带 文件:行 取证、经独立复核、经脚本校验的合规报告。当用户问「这个项目上线合不合规」「调用了 OpenAI/Claude 算不算数据出境」「要不要做 AI 标识」「帮我做合规自查/等保/PIPL 检查」时使用。Audit an AI project's…

jnMetaCode/shellward140—~1.1kAutomated safety check: PassApache-2.09 days ago
12
12.Sail

Apply the SAIL (Secure AI Lifecycle) V2 framework by Pillar Security to secure AI applications and agents.

pillar-labs/sail-skill113—~5.1kAutomated safety check: PassUnknown3 mo ago
13

Installs hooks that check each agent action against security policies before it runs, blocking destructive commands and logging every decision.

pegasi-ai/reins392—~1.4kAutomated safety check: WarnApache-2.04 mo ago
14

Probes an AI agent through dialogue to check whether its file, code-execution or network tools can be misused to run unexpected code or reach outside targets.

Tencent/AI-Infra-Guard6.8k—~1.5kAutomated safety check: NotesApache-2.0today
15

A skill your agent uses when running or explaining the ClawScan CLI, including one-off agent-skill scans, benchmark runs, scanner fixtures, judge harness commands, env var validation, and…

openclaw/clawscan142—~3kAutomated safety check: PassMITyesterday
16

Guide for writing eval conversation JSONs and running them through policy engines

open-bias/open-bias143—~1.5kAutomated safety check: PassApache-2.0yesterday
17

Tells a model how to treat the tagged double-brace placeholders that Maskit's local privacy gateway substitutes for sensitive text, so tokens are copied exactly instead of guessed, split or faked.

xiaYuTian11/maskit295—~718Automated safety check: PassAGPL-3.03 days ago
18

Native Rust browser automation CLI for AI agents. An agent skill from gsd-build/gsd-browser.

gsd-build/gsd-browser268—~7.5kAutomated safety check: PassApache-2.05 mo ago
19

Auto-fix security vulnerabilities found in CII, AI, robot, space, and supply chain systems.

cdppcorp/KESE-KIT361—~1.1kAutomated safety check: PassMIT6 mo ago
20

Check HOL Guard local protection status for Claude Code without changing configuration.

hashgraph-online/hol-guard815—~231Automated safety check: PassApache-2.0today
21

Statically audits GitHub Actions workflows that run AI coding agents, tracing attacker-controlled input to agent prompts and flagging unsafe sandbox, trigger and allowlist settings.

trailofbits/skills7.4k6 repos~5.4kAutomated safety check: NotesCC-BY-SA-4.0yesterday
22

Probes whether an agent with web fetch and stored user memory can be tricked by a malicious page into leaking data through chained URL paths.

Tencent/AI-Infra-Guard6.8k—~1.8kAutomated safety check: PassApache-2.0today
23

A skill your agent uses when a researcher, maintainer, or contributor found or suspects a malicious skill on ClawHub and needs a private reporting workflow: opening a GitHub private vulnerability…

openclaw/clawscan142—~1.1kAutomated safety check: PassMITyesterday
24

Security hardening toolkit for OpenClaw. An agent skill from adversa-ai/secureclaw.

adversa-ai/secureclaw3481 repo~193Automated safety check: PassMIT5 mo ago
25

Probes whether an agent can be hijacked by instructions hidden in documents, retrieved chunks or fetched web pages, using test prompts that embed a hidden instruction.

Tencent/AI-Infra-Guard6.8k—~1.1kAutomated safety check: WarnApache-2.0today
26

Route wording work to GPT (codex CLI) or Gemini (agy CLI) instead of writing it with Claude — landing-page copy, a readability rewrite of a README or docs page, attack and judge prompts for a rule…

guardana/guardana129—~1.2kAutomated safety check: PassApache-2.0yesterday
27

A skill your agent uses when an OpenClaw maintainer or owner is reviewing a ClawHub malicious-skill profile proposal PR: checking proposals/<GHSA-ID/clawscan.yml, reading the private vulnerability…

openclaw/clawscan142—~1.9kAutomated safety check: PassMITyesterday
28

Plan, execute, document, and retest authorized security assessments of AI agents and multi-agent workflows using safe adversarial cases, synthetic identities, canaries, and evidence-based findings.

seb1n/awesome-ai-agent-skills206—~2.8kAutomated safety check: PassMIT1 mo ago
29

Generate secure coding prompts and guides for AI tools (Claude, ChatGPT, Cursor, Copilot).

cdppcorp/KESE-KIT361—~1.4kAutomated safety check: PassMIT6 mo ago
30
30.Ship

Commit and push a finished change the way this repo requires — explicit paths, one commit per logical change, no attribution, the five documentation places answered, the site checks before a push (a…

guardana/guardana129—~836Automated safety check: NotesApache-2.0yesterday
31

Use HOL Guard to preview and protect AI-agent package installs, Cursor surfaces, CI, and automation workflows.

hashgraph-online/hol-guard815—~605Automated safety check: PassApache-2.0today
32

Static safety audit of a SKILL.md that scores five dimensions and acts as a gate: skills below the pass line do not ship, whatever else they score.

openJiuwen-ai/agent-core442—~3.5kAutomated safety check: WarnApache-2.0today
33

Finds security threats in a design with a STRIDE pass per component, rates severity and records fixes, with extra checks for AI agent and tool risks.

dralgorhythm/claude-agentic-framework125—~581Automated safety check: PassNo licence2 mo ago
34

Applies the AI SAFE2 v3.1 governance framework to designing, building, auditing and testing AI agents, RAG pipelines, MCP and tool integrations and AI infrastructure.

CyberStrategyInstitute/ai-safe2-framework146—~2.7kAutomated safety check: PassUnknowntoday
35

Refreshes the guide's coding-agent and MCP security threat data through AgentSec Triage: research advisories, add tested records and synchronize the public feed.

FlorianBruniaux/claude-code-ultimate-guide6.1k—~680Automated safety check: PassCC-BY-SA-4.0yesterday
36

Scan AI agent skills, plugins, MCP servers, and agent tooling for prompt injection, unsafe commands, secret exposure, and supply-chain risks before installing or trusting them.

iflytek/skillhub5.2k2 repos~1.1kAutomated safety check: NotesApache-2.0today
37

Run a security vulnerability assessment based on KISA guidelines.

cdppcorp/KESE-KIT361—~2.3kAutomated safety check: PassMIT6 mo ago
38

Give the AI agent its own EVM wallet with admin-controlled policies the agent CANNOT bypass even under prompt injection.

internet-court/internet-court-skill6.4k2 repos~4.1kAutomated safety check: PassMIT1 mo ago
39

Report/investigate RUNTIME ACTIVITY of AI agents (Agent 365 / Copilot Studio / M365 Copilot / Work IQ) — agents used, tools/connectors, channels, tokens, prompt/reply content, and Prompt Shield…

SCStelz/security-investigator249—~17kAutomated safety check: PassMIT2 days ago
40

Add security coverage to Guardana the way this repository requires — as a rule, evaluator or target, never by patching the engine — with the fixtures, the framework mapping and the documentation…

guardana/guardana129—~1.1kAutomated safety check: PassApache-2.0yesterday
41

OpenClaw 安全部署指南 / Security deployment guide — help users secure their OpenClaw installation

jnMetaCode/shellward140—~644Automated safety check: WarnApache-2.09 days ago
42

AI governance, EU AI Act compliance, OWASP LLM security, responsible AI practices for GitHub Copilot agents

Hack23/cia239—~1.4kAutomated safety check: PassApache-2.0yesterday
43

Detect error propagation, chain failures, and single-point breakdowns that cascade across agent workflows.

Tencent/AI-Infra-Guard6.8k—~593Automated safety check: PassApache-2.0today
44

Audit AI agent configurations for security risks — excessive permissions, prompt injection surfaces, data exfiltration paths, and missing guardrails.

OWASP/secure-agent-playbook187—~542Automated safety check: PassCC-BY-4.013 days ago
45

A skill your agent uses when reviewing an agent Skill before sharing, installing, or executing it and when checking a Skill bundle for credentials, dangerous commands, suspicious network behavior…

zrt-ai-lab/opencode-skills287—~317Automated safety check: PassNo licence2 mo ago
46

Audit or report on AI agent security posture across Copilot Studio, Microsoft 365 Copilot, Microsoft Foundry, and third-party agents.

SCStelz/security-investigator249—~21kAutomated safety check: PassMIT2 days ago
47
47.Auto

Autonomous, non-interactive run of the whole lifecycle for one development task — size, plan, build, gate, review, fix, commit — without stopping for questions.

guardana/guardana129—~792Automated safety check: PassApache-2.0yesterday
48

Audit agent skills, plugins, prompts, manifests, scripts, dependencies, and bundled assets for provenance, prompt-injection, permission, execution, exfiltration, persistence, and update risk.

seb1n/awesome-ai-agent-skills206—~2.4kAutomated safety check: PassMIT1 mo ago

Questions, answered from the data.

What is the best prompt injection and agent security skill?

Skill Inspector (official) from NVIDIA/SkillSpector ranks first of the 157 prompt injection and agent security skills listed here, with the highest score: its repository has 20k GitHub stars, 1 other GitHub owner carry a copy, its SKILL.md loads about 1.8k tokens and it passes the automated safety check with no findings. Next come Skill Scanner and Authorization Bypass Detection.

Which prompt injection and agent security skills are official?

5 of the 157 prompt injection and agent security skills are official, published by the vendor's own GitHub organization: Skill Inspector, Skill Scanner, Agentic GitHub Actions Auditor, Agent Owasp Compliance and Remediating With AWS Security Agent.

How are these skills ranked?

By Skill Navigator score, which combines the GitHub stars of the skill's repository (shared across that repo's skills and discounted for large collections), how many other GitHub owners carry a copy of the skill, and automated SKILL.md quality checks, minus penalties for safety-check warnings and for each further skill from the same repository. Skills that fail the safety check are not listed.