Skip to main content
SkillSafe
Skills Demos Docs Security Blog Pricing Dashboard
Signed in as

Dashboard API Keys Billing Settings
Esc
↑↓ navigate ↵ open esc close View all in Skills →
Home / Blog / #security

#security

10 articles with this tag.

Security Jun 11, 2026 10 min read

OpenClaw Shows Why Agents Need a Bill of Materials

Renewed discussion of OpenClaw's local-agent takeover risk shows why teams need an Agent Bill of Materials for skills, plugins, MCP servers, and connectors.

Security Jun 10, 2026 8 min read

Cisco Cloud Control Makes Agent Tool Governance Mainstream

Cisco's Cloud Control launch puts AI agents, MCP connectors, and third-party tool marketplaces inside critical infrastructure operations.

Security Jun 7, 2026 9 min read

VIPER-MCP Shows Agent Tools Need Taint Scanning

VIPER-MCP found 106 confirmed zero-days across nearly 40,000 MCP server repos. Agent tool security now needs code-level taint analysis, not just trust prompts.

Security Jun 6, 2026 8 min read

Microsoft ACS: Agent Controls Move Into the Runtime

Microsoft's Agent Control Specification gives agent teams a portable runtime policy layer for tool calls, approvals, and audit evidence.

Security Jun 5, 2026 8 min read

NSA MCP Guidance: Inventory Agent Tools Before They Drift

NSA's MCP security guidance turns the agent tooling debate into an operational checklist: inventory servers, verify tool changes, and scan before trust drifts.

Security Jun 5, 2026 9 min read

Ruleset v2026.06.05: What 300 Sub-Agent Reviews Revealed

A focused review pass surfaced a malicious publisher family targeting Claude Code config — and a handful of regex rules costing more in false positives than they were worth. Here's what we changed.

Security Jun 4, 2026 8 min read

MCP RCE Debate: Treat Agent Plugins Like Executable Code

The public debate around MCP remote code execution risk shows a hard lesson for AI agents: plugins, connectors, and skills need supply-chain controls.

Best Practices Apr 7, 2026 13 min read

Best AI Security Auditing Skills for Developers [2026]

Top 5 security auditing skills from our scored review — 146 vulnerability vectors, 11 footgun databases, and a real-time GitHub supply chain auditor.

Security Mar 31, 2026 12 min read

MCP Tool Poisoning: How Hidden Metadata Hijacks AI Agents

MCP tool descriptions are visible to your AI agent but hidden from you. Attackers embed instructions that hijack agent behavior and steal credentials.

Security Mar 15, 2026 14 min read

SkillJect and the Gap in Skill Registry Security

A new paper achieves 97.5% attack success against Claude Code using poisoned skills. Here's what we found, and the four detection rules we shipped in response.

SkillSafe

The secured registry for AI skills.

Get Started

Quickstart Claude Code Cursor Windsurf Codex

Product

Skills Trending Scan Pricing Docs

Security

Overview MCP Security Why SkillSafe

Company

Blog GitHub Privacy Terms Support
© 2026 SkillSafe

Sign in to SkillSafe

Don't have an account?

or

By signing in, you agree to our Terms and Privacy Policy.

Create a SkillSafe Account

Already have an account?

or

By signing up, you agree to our Terms and Privacy Policy.

Verify your email

We sent a code to

Reset your password

Enter reset code

We sent a code to

Send Feedback
0 / 2000