$ timeahead.in
/ servers/pypi/cisco-ai-skill-scanner
pypi

cisco-ai-skill-scanner

๐Ÿ” Discover and analyze AI skills in your projects with Skill Scanner to enhance development and improve security.

โ†“ 44k/wkupdated 0d agogithub โ†—
65fair
โ–ฃ Overview
LicensePython 3.10+PyPI versionCIDiscordCisco AI DefenseAI Security Framework

What it does

Skill Scanner is a static analysis tool that scans AI agent skill definitions to identify security vulnerabilities, misconfigurations, and compliance risks. It reads skill files from the filesystem, evaluates them against security patterns and threat models, and generates detailed vulnerability reports. The tool is designed for cross-platform use on Windows, macOS, and Linux, requiring 4 GB RAM and 100 MB disk space.

Who it's for

Security engineers and platform teams deploying AI agents in regulated or high-assurance environments. Specifically: teams managing multi-agent systems who need systematic pre-deployment vulnerability assessment, compliance officers needing audit trails of agent skill reviews, and DevOps engineers enforcing security gates in agent deployment pipelines.

Common use cases

  • Scan agent skill definitions before production deployment
  • Generate security audit reports for compliance reviews
  • Detect hardcoded secrets or unsafe patterns in agent code
  • Establish recurring security scans as part of skill lifecycle management

Setup pitfalls

  • The package contains 3 embedded secrets in the source code; isolate scanning instances to avoid credential exposure
  • Requires filesystem read and write permissions; restrict its directory scope to limit blast radius
  • Makes outbound network calls for updates and features; verify your network and proxy policies allow these
  • No automated test suite or CI integration; test the tool against your actual agent skill definitions and expected threat models before integrating into production workflows
โš  3 credentials detected in repository history via Gitleaks
โ–ฃ Score BreakdownMCPScore = ฮฃ(raw ร— weight)
DimensionRawWeighted
Security
35%
40
14.0
Freshness
25%
100
25.0
Adoption
20%
56
11.1
Quality
10%
100
10.0
Trust
10%
50
5.0
Total
65.1
โšฟ Capabilities & Risk Explainer
fs readfs writenetworkexecevalsecrets
โ—† Risk level: high
fs read + fs write + network + exec + eval + secrets active โ€” can execute code, access credentials, and make external network calls.
โš™ Install config
Claude Desktop ยท Cursor ยท Windsurf ยท VS Code (Copilot) ยท Claude Code
add to your MCP client config:
{
  "mcpServers": {
    "cisco-ai-skill-scanner": {
      "command": "uvx",
      "args": [
        "cisco-ai-skill-scanner"
      ]
    }
  }
}
๐Ÿ“ˆ Score historylast 30 snapshots
5/10/20266/11/2026 ยท 30 snapshots
โš™ Maintenance health
27/ 100 ยท is this project alive?
contributors (1y)7
top contributor share48%
releases (1y)0
ciโœ— none
โ› Raw data
weekly downloads44k
github stars0
forks1
open issues1
licenseโœ“ present
readme length15718 chars
last publish0d ago
last commit0d ago
last updated1d ago
install verifiedโœ“ pass ยท 25d ago
owner of this server? claim your listing to get a verified badgeclaim โ†’
๐Ÿ”” Score drop alerts
get notified by email when this server's score drops 5+ points