Skip to main content
SkillSafe
Apps Skills Docs Blog Pricing Dashboard
Signed in as

Dashboard API Keys Billing Settings
Esc
↑↓ navigate ↵ open esc close View all in Skills →
Home / Blog / #prompt-injection

#prompt-injection

4 articles with this tag.

Security Jun 16, 2026 7 min read

Agentjacking Turns MCP Tool Output Into an Execution Path

Tenet's Agentjacking research shows how fake Sentry errors can hijack coding agents through MCP tool output. The defense starts with treating tool data as untrusted.

Security Jun 12, 2026 10 min read

Agent Phishing Shows Why Tool Permissions Need Identity Checks

Varonis and Imperva showed OpenClaw agents leaking data and running code from ordinary-looking inputs. The defense starts with identity-bound tool permissions.

Security Apr 2, 2026 8 min read

ToxicSkills: What the First Large-Scale Agent Skill Audit Found

Snyk scanned 3,984 AI agent skills: 36% had security flaws, 534 critical issues, 76 active malware. What this means for developers installing skills.

Security Mar 31, 2026 12 min read

MCP Tool Poisoning: How Hidden Metadata Hijacks AI Agents

MCP tool descriptions are visible to your AI agent but hidden from you. Attackers embed instructions that hijack agent behavior and steal credentials.

SkillSafe

The secured registry for AI skills.

Get Started

Quickstart Claude Code Cursor Windsurf Codex Turn a skill into an app

Product

Apps Skills Models Trending Scan Pricing Docs

Security

Overview MCP Security Why SkillSafe

Company

Blog Changelog GitHub Privacy Terms Support
© 2026 SkillSafe
SOC 2 Certified HIPAA Compliant Every Shared Skill Scanned

Sign in to SkillSafe

Don't have an account?

or

By signing in, you agree to our Terms and Privacy Policy.

Create a SkillSafe Account

Already have an account?

or

By signing up, you agree to our Terms and Privacy Policy.

Verify your email

We sent a code to

Reset your password

Enter reset code

We sent a code to

Send Feedback
0 / 2000