Audit installed skills for risky execution, data access, exfiltration, and overscoped triggers
- Initial release of skill-security-audit, a tool for batch auditing the security of installed Skills. - Supports detection of command execution, network access, file/system access, data leakage, dependency risks, prompt injection, and trigger condition issues. - Provides structured security reports per Skill with severity ratings, risk evidence, and remediation suggestions. - Includes auditing matrix and severity definitions to standardize risk evaluation. - Output includes both detailed reports and an overall summary highlighting top risks and remediation priorities.