skills/find-skills vercel-labs | | The skill forces non-interactive global installations of unpinned, untrusted packages, creating a critical security vulnerability that allows arbitrary code execution with system-wide privileges. | 23.1k | 2.1M | 5 | 70High |
skills/frontend-design anthropics | | The skill lacks transparency due to the absence of code blocks or usage examples, preventing users from verifying its functionality and security posture. | 153.0k | 568.1k | 1 | 15Low |
agent-skills/vercel-react-best-practices vercel-labs | | No security issues detected in vercel-labs/agent-skills/vercel-react-best-practices. | 28.1k | 489.8k | – | 0None |
agent-browser/agent-browser vercel-labs | | This skill facilitates remote code execution via dynamic instruction fetching, exposes sensitive session data through an insecure proxy, and employs keyword stuffing to hijack agent control for unauthorized tasks. | 36.5k | 467.0k | 8 | 70High |
azure-skills/microsoft-foundry microsoft | | The skill uses keyword stuffing for over-triggering, lacks defined tool constraints for sensitive operations, and references missing documentation, suggesting potential runtime execution from unverified external sources. | 1.2k | 405.2k | 7 | 40Medium |
agent-skills/web-design-guidelines vercel-labs | | The skill facilitates remote prompt injection by fetching and executing authoritative instructions from an external URL, allowing attackers to hijack agent behavior while bypassing security review processes. | 28.1k | 403.6k | 4 | 70High |
azure-skills/azure-ai microsoft | | The skill exhibits potential impersonation risks and relies on missing documentation files, causing silent workflow degradation and preventing transparent evaluation of its functionality. | 1.2k | 402.6k | 7 | 40Medium |
azure-skills/azure-deploy microsoft | | The skill contains multiple broken documentation links to missing external files, creating an opaque execution environment that prevents proper security evaluation of its deployment workflows. | 1.2k | 402.3k | 6 | 15Low |
azure-skills/azure-diagnostics microsoft | | The skill contains multiple broken documentation references, indicating incomplete packaging that may cause runtime failures or unexpected behavior when accessing external resources. | 1.2k | 402.2k | 5 | 15Low |
azure-skills/azure-prepare microsoft | | The skill lacks defined tool constraints and relies on missing external documentation, creating an opaque execution environment that prevents proper security auditing and verification of its runtime behavior. | 1.2k | 402.1k | 7 | 15Low |
azure-skills/azure-storage microsoft | | The skill contains multiple broken documentation links, indicating poor maintenance and potential runtime instability due to missing dependency references. | 1.2k | 401.8k | 5 | 15Low |
azure-skills/azure-validate microsoft | | The skill lacks transparency and relies on missing external documentation, creating an opaque execution environment that prevents proper security verification of its runtime behavior. | 1.2k | 401.5k | 4 | 15Low |
azure-skills/entra-app-registration microsoft | | The skill lacks transparency and contains multiple broken documentation references, leading to potential runtime failures or reliance on unverified external content. | 1.2k | 401.4k | 6 | 15Low |
azure-skills/appinsights-instrumentation microsoft | | The skill lacks transparency and contains multiple broken documentation references, leading to silent runtime degradation and an inability for users to verify its intended functionality. | 1.2k | 401.3k | 6 | 15Low |
azure-skills/azure-compliance microsoft | | The skill lacks transparency and references multiple missing documentation files, creating an opaque execution environment where workflows may silently degrade or fetch external content from untrusted sources. | 1.2k | 401.3k | 6 | 15Low |
azure-skills/azure-rbac microsoft | | The skill lacks transparency and verifiable code documentation, preventing users from assessing its security posture or confirming it performs only intended Azure role-based access control operations. | 1.2k | 401.3k | 1 | 15Low |
azure-skills/azure-resource-lookup microsoft | | The skill exhibits a potential supply chain risk by referencing external documentation that is missing from the package, which could lead to unauthorized content injection or runtime execution errors. | 1.2k | 401.3k | 1 | 15Low |
azure-skills/azure-aigateway microsoft | | The skill impersonates a brand, lacks declared tool constraints, performs unauthorized network access, and relies on missing external documentation, creating significant security and transparency risks. | 1.2k | 401.2k | 8 | 40Medium |
azure-skills/azure-kusto microsoft | | No security issues detected in microsoft/azure-skills/azure-kusto. | 1.2k | 401.1k | – | 0None |
azure-skills/azure-resource-visualizer microsoft | | The skill contains broken documentation links and missing assets, leading to silent runtime degradation and a lack of transparency regarding its operational dependencies. | 1.2k | 401.1k | 4 | 15Low |
azure-skills/azure-messaging microsoft | | The skill lacks sufficient documentation and code examples, preventing users from verifying its functionality and assessing potential security risks. | 1.2k | 390.9k | 1 | 15Low |
skills/remotion-best-practices remotion-dev | | The skill uses hidden text, executes unpinned packages, performs unauthorized network and file operations, and relies on missing external documentation, creating significant security and supply chain risks. | 3.7k | 381.3k | 10 | 70High |
azure-skills/azure-hosted-copilot-sdk microsoft | | The skill contains broken documentation links to missing reference files, causing silent workflow degradation and preventing users from verifying security and configuration practices. | 1.2k | 374.2k | 6 | 15Low |
skills/grill-me mattpocock | | The skill is functionally inert and lacks transparency regarding its purpose, licensing, and implementation, failing to provide any verifiable utility or security assurance. | 137.2k | 353.2k | 3 | 40Medium |
azure-skills/azure-compute microsoft | | The skill documentation references multiple missing workflow files, indicating incomplete packaging that causes silent functional degradation during runtime. | 1.2k | 345.0k | 5 | 15Low |
azure-skills/azure-cloud-migrate microsoft | | The skill lacks transparency and relies on multiple missing documentation files, creating an opaque execution environment where critical workflow logic is sourced from external, unverified locations at runtime. | 1.2k | 335.0k | 6 | 15Low |
skills/improve-codebase-architecture mattpocock | | The skill lacks defined tool constraints, documentation, and transparency, creating an opaque execution environment that prevents proper security auditing and verification of its runtime behavior. | 137.2k | 289.8k | 4 | 15Low |
skills/grill-with-docs mattpocock | | The skill exhibits insecure design by bypassing model invocation restrictions and blindly executing unverified external skills, creating a significant risk of malicious sub-agent hijacking. | 137.2k | 286.1k | 4 | 70High |
skills/skill-creator anthropics | | The skill lacks defined tool constraints, allowing unrestricted execution of commands, file operations, and network access, which poses a significant security risk for arbitrary code execution. | 153.0k | 278.4k | 2 | 15Low |
skills/tdd mattpocock | | The skill lacks essential documentation files and a specified license, leading to potential runtime errors and ambiguity regarding usage terms. | 137.2k | 273.4k | 4 | 15Low |
azure-skills/azure-quotas microsoft | | The skill bypasses user confirmation, probes cloud metadata, and executes unconstrained operations while relying on external, non-packaged documentation, creating significant security and transparency risks. | 1.2k | 271.7k | 5 | 40Medium |
caveman/caveman juliusbrussee | | The skill lacks a license and a descriptive purpose, but it does not exhibit any malicious behavior or security vulnerabilities. | 74.9k | 267.0k | 2 | 0None |
azure-skills/azure-upgrade microsoft | | The skill contains multiple broken documentation links to missing external files, creating an opaque execution environment where critical workflow logic is sourced from untrusted or undefined locations. | 1.2k | 264.2k | 6 | 15Low |
runcomfy-agent-skills/video-edit agentspace-so | | The skill executes unpinned, unverified packages and performs arbitrary system operations without declaring required tools, creating significant risks for supply chain attacks and unauthorized system access. | 22 | 263.2k | 4 | 40Medium |
runcomfy-agent-skills/image-to-video agentspace-so | | The skill executes unpinned, unverified packages and performs arbitrary system operations without declaring necessary tool constraints, creating a significant risk of supply chain compromise and unauthorized system access. | 22 | 262.7k | 4 | 40Medium |
runcomfy-agent-skills/flux-kontext agentspace-so | | The skill executes unpinned, unverified npx packages at runtime, creating a significant supply chain risk by allowing arbitrary code execution from potentially malicious or compromised external dependencies. | 22 | 262.3k | 3 | 40Medium |
runcomfy-agent-skills/happyhorse-1-0 agentspace-so | | The skill executes unpinned, unverified dependencies and performs arbitrary system operations without declaring required tools, creating a high risk of supply chain compromise and unauthorized system access. | 22 | 261.8k | 4 | 40Medium |
runcomfy-agent-skills/gpt-image-edit agentspace-so | | The skill executes unpinned, unverified packages via npx at runtime, creating a significant supply chain risk by allowing arbitrary code execution from potentially compromised or malicious external dependencies. | 22 | 261.7k | 3 | 40Medium |
runcomfy-agent-skills/seedance-v2 agentspace-so | | The skill executes unpinned, unverified packages via npx, creating a significant supply chain risk by allowing arbitrary, potentially malicious code to run in the agent's environment. | 22 | 261.7k | 3 | 40Medium |
runcomfy-agent-skills/wan-2-7 agentspace-so | | The skill executes unpinned, unverified packages via npx, creating a significant supply chain risk by allowing arbitrary, potentially malicious code to run without integrity checks or version constraints. | 22 | 261.7k | 3 | 40Medium |
skills/to-prd mattpocock | | The skill forces the execution of an undefined, external setup command, creating a significant security risk by allowing arbitrary, potentially malicious environment configuration from an untrusted source. | 137.2k | 254.6k | 4 | 70High |
skills/agentspace agentspace-so | | The skill facilitates unauthorized local file exfiltration and grants excessive file-editing permissions while relying on unverified, unpinned dependencies that expose the workspace to significant remote compromise risks. | 10 | 254.4k | 6 | 40Medium |
cli/lark-doc larksuite | | The skill contains multiple broken documentation references that cause silent workflow degradation and fails to specify a license, indicating poor maintenance and lack of transparency. | 14.4k | 252.7k | 6 | 15Low |
cli/lark-base larksuite | | The skill lacks transparency due to missing documentation files and an unspecified license, creating potential reliability issues and ambiguity regarding usage terms. | 14.4k | 251.9k | 7 | 15Low |
cli/lark-im larksuite | | The skill lacks documentation for its core functions and introduces security risks by processing potentially malicious external content without adequate validation or defined usage terms. | 14.4k | 251.7k | 7 | 40Medium |
cli/lark-shared larksuite | | The skill lacks defined tool constraints, allowing unrestricted execution of commands, file operations, and network access, which poses a significant security risk for unauthorized system interaction. | 14.4k | 251.2k | 2 | 15Low |
agent-skills/sleek-design-mobile-apps sleekdotdesign | | The skill facilitates SSRF via arbitrary URL fetching and enables remote command injection by piping unverified API responses directly into shell commands, violating its stated network access restrictions. | 426 | 249.3k | 5 | 40Medium |
skills/to-issues mattpocock | | The skill executes an undefined, arbitrary command that risks unauthorized code execution and environment poisoning, while lacking transparency through missing documentation and licensing. | 137.2k | 243.8k | 3 | 40Medium |