Skip to main content
SkillSafe
Skills Demos Docs Security Blog Pricing Dashboard
Signed in as

Dashboard API Keys Billing Settings
Esc
↑↓ navigate ↵ open esc close View all in Skills →
Home / Blog / #verification

#verification

11 articles with this tag.

Security Jun 11, 2026 10 min read

OpenClaw Shows Why Agents Need a Bill of Materials

Renewed discussion of OpenClaw's local-agent takeover risk shows why teams need an Agent Bill of Materials for skills, plugins, MCP servers, and connectors.

Security Jun 10, 2026 8 min read

Cisco Cloud Control Makes Agent Tool Governance Mainstream

Cisco's Cloud Control launch puts AI agents, MCP connectors, and third-party tool marketplaces inside critical infrastructure operations.

Security Jun 9, 2026 9 min read

Vercel's Skills API Turns Agent Skills Into Infrastructure

Vercel opened the skills.sh API for programmatic access to 600,000+ agent skills. That is useful, but it makes skill verification a platform concern.

Security Jun 7, 2026 9 min read

VIPER-MCP Shows Agent Tools Need Taint Scanning

VIPER-MCP found 106 confirmed zero-days across nearly 40,000 MCP server repos. Agent tool security now needs code-level taint analysis, not just trust prompts.

Security Jun 6, 2026 8 min read

Microsoft ACS: Agent Controls Move Into the Runtime

Microsoft's Agent Control Specification gives agent teams a portable runtime policy layer for tool calls, approvals, and audit evidence.

Security Jun 5, 2026 8 min read

NSA MCP Guidance: Inventory Agent Tools Before They Drift

NSA's MCP security guidance turns the agent tooling debate into an operational checklist: inventory servers, verify tool changes, and scan before trust drifts.

Security Mar 28, 2026 7 min read

When Trusted Packages Turn Hostile: Cascading Supply Chain Attacks

TeamPCP compromises legitimate packages and cascades through the supply chain via stolen credentials. Why this attack pattern evades detection.

Security Mar 27, 2026 7 min read

You're Using Claude Code Skills. Do You Know What's in Them?

Claude Code skills can read files, run commands, and access credentials. What the skill ecosystem gets wrong about security — and how to protect yourself.

Security Mar 9, 2026 12 min read

Why Scanning Architecture Matters: Comparing Skill Registry Security

Comparing install-time scanning, reactive moderation, and dual-side verification — and the supply chain attack vectors each security model misses.

Product Updates Feb 15, 2026 5 min read

Introducing SkillSafe: Why AI Coding Skills Need a Verified Registry

341 malicious AI skills were found on a major registry. SkillSafe scans before sharing, re-verifies on install, and blocks tampered code automatically.

Security Feb 10, 2026 4 min read

How Dual-Side Verification Protects Against Supply Chain Attacks

How SkillSafe dual-side verification works: publisher scans, consumer re-scans, and cryptographic tree hashes that detect tampering before install.

SkillSafe

The secured registry for AI skills.

Get Started

Quickstart Claude Code Cursor Windsurf Codex

Product

Skills Trending Scan Pricing Docs

Security

Overview MCP Security Why SkillSafe

Company

Blog GitHub Privacy Terms Support
© 2026 SkillSafe

Sign in to SkillSafe

Don't have an account?

or

By signing in, you agree to our Terms and Privacy Policy.

Create a SkillSafe Account

Already have an account?

or

By signing up, you agree to our Terms and Privacy Policy.

Verify your email

We sent a code to

Reset your password

Enter reset code

We sent a code to

Send Feedback
0 / 2000