Launched this week
GuardSkills

GuardSkills

Scan skills before install. Ship safer AI workflows.

3 followers

GuardSkills is a lightweight security layer for the skills.sh ecosystem that analyzes skills before execution to reduce trust risk. It inspects metadata and behavior to flag dangerous commands, suspicious network access, and secret exfiltration. Built specifically for skills.sh workflows, it applies context-aware policies and supports custom allow/deny rules. Install via npm, add one guard step, and gain visibility
GuardSkills gallery image
GuardSkills gallery image
Free
Launch Team / Built With
Unblocked AI Code Review
Unblocked AI Code Review
High-signal comments based on your team's context
Promoted

What do you think? …

Felix Christo
Maker
📌
Why GuardSkills exists 👇 The skills.sh ecosystem is powerful, but it has a blind spot: anyone can publish a skill, and those skills run with your environment, files, and secrets. There’s no review layer like an App Store. GuardSkills adds that missing checkpoint. It analyzes skills before execution to detect risky behavior (dangerous shell commands, filesystem writes, network access, secret exfiltration) using skills.sh–aware, context-based rules, not generic npm scanning. Think of it as a security gate for skills, so teams can safely use community and third-party skills without blindly trusting code. Install, add one guard step, define your policies, and ship faster without compromising security.