Skip to main content

Tencent/AI-Infra-Guard

SkillsMP has collected 19 skills from Tencent/AI-Infra-Guard. Open a skill to review its source and details.

Latest recorded source activity
SkillsMP catalog refreshed
skills collected
19
GitHub stars
6,077
GitHub forks
563

Skills in this repository

1 occupation categories · 100% classified

Showing 19 of 19 collected skills.

occupation
Information Security Analysts
description

当用户要求 AI/Agent 安全评估、蓝军演习、AI 安全审查、提示词注入测试、MCP/Skill/插件/代码包审计、Agent 工具链滥用测试,或需要生成类似渗透测试报告的 Markdown/HTML 时,必须使用本 skill。本 skill 让 Agent 以授权蓝军视角成为 AI 安全专家,面向 AI 产品、Agent、MCP Server、Skill、代码仓库和 AI 基础设施进行安全演习。优先使用第一性原理推理和真实证据,而不是机械跑 payload 库;脚本只用于 HTTP…

Source text: Chinese

updated
occupation
Information Security Analysts
description

Detect agentic supply-chain risks: compromised dependencies, malicious plugins/tools/models, and untrusted update sources.

updated
occupation
Information Security Analysts
description

Detect error propagation, chain failures, and single-point breakdowns that cascade across agent workflows.

updated
occupation
Information Security Analysts
description

Detect social engineering, deceptive responses, false assurances, or prompts that induce unsafe user actions.

updated
occupation
Information Security Analysts
description

Detect data leakage, missing boundaries, or privilege mismatch in inter-agent communication.

updated
occupation
Information Security Analysts
description

Detect command injection, eval/exec usage, remote execution, or arbitrary code loading.

updated
occupation
Information Security Analysts
description

OWASP Top 10 for Agentic Applications 2026 (ASI) classification framework. Use for mapping security findings to standardized risk categories.

updated
occupation
Information Security Analysts
description

Detect privilege escalation and unauthorized access via dialogue. Use when the agent has roles, admin functions, or multi-user data.

updated
occupation
Information Security Analysts
description

Detect sensitive information disclosure via escalating dialogue probes. Covers system prompt extraction, credential/API key leakage, PII, and internal configuration exposure.

updated
occupation
Information Security Analysts
description

Detect direct prompt injection or instruction override via user message (no external content). Focuses on system/role override attempts.

updated
occupation
Information Security Analysts
description

Detect unsafe file handling and path traversal in upload/save/extract flows. Focuses on user-controlled paths or filenames, not data leakage.

updated
occupation
Information Security Analysts
description

Detect hardcoded secrets in code or configuration accessible to the target agent. Focuses on secrets embedded in source, configs, or IaC, not runtime leaks.

updated
occupation
Information Security Analysts
description

Detect indirect prompt injection (goal hijack). Instructions hidden in "external" content (documents, RAG, web) that the agent processes. Use when the agent has document/RAG/web/file input.

updated
occupation
Information Security Analysts
description

Detect persistent instruction injection or long-term memory poisoning. Focus on writing/retaining hostile instructions for future tasks, not data leakage.

updated
occupation
Information Security Analysts
description

Detect tool misuse and unexpected code execution via dialogue testing. Use when the agent exposes file, code-execution, or network tools.

updated
occupation
Information Security Analysts
description

Detect data exfiltration via URL path encoding and chained web_fetch navigation. Covers fake trusted UI injection, letter-level URL path exfiltration, and multi-hop navigation hijacking. Use when the agent has web/URL fetch capability and stores user memory…

updated
occupation
Information Security Analysts
description

A.I.G Scanner — AI security scanning for infrastructure, AI tools / skills, AI Agents, and LLM jailbreak evaluation via Tencent Zhuque Lab AI-Infra-Guard. Uses built-in exec + Python script, no plugin required. Requires AIG_BASE_URL to be configured. Triggers…

updated
occupation
Information Security Analysts
description

The first security skill to install after setting up OpenClaw — powered by Tencent Zhuque Lab. Works like an antivirus for your AI environment: audits installed skills, scans skills before installation, and performs a full OpenClaw security health check to…

Source text: Mixed languages

updated
occupation
Information Security Analysts
description

Scan any agent skill for security risks before you install or use it. Powered by Tencent Zhuque Lab A.I.G (AI-Infra-Guard). 100% local static analysis — no file contents or credentials leave your device. Compatible with CodeBuddy, Cursor, Windsurf, Claude…

updated
Showing 19 of 19 collected skills.