con un clic
url-skill
Fixture exercising every malicious-URL rule. Use only in tests.
Instalar con Codex o Claude Copia este prompt, pégalo en Codex, Claude u otro asistente, y deja que revise la página de la skill y la instale por ti.
Menú
Fixture exercising every malicious-URL rule. Use only in tests.
Instalar con Codex o Claude Copia este prompt, pégalo en Codex, Claude u otro asistente, y deja que revise la página de la skill y la instale por ti.
Basado en la clasificación ocupacional SOC
| name | url-skill |
| description | Fixture exercising every malicious-URL rule. Use only in tests. |
Allowlisted host (no finding expected): https://github.com/foo/bar
Shortener (U1): https://bit.ly/abc123 Paste site (U2): https://pastebin.com/raw/deadbeef IP literal (U3): http://10.0.0.5/install.sh Suspicious TLD (U4): https://promo.xyz/landing Insecure scheme (U5): http://example.org/page
Suppressed shortener: https://t.co/xyz # scan:ignore
Scans AI agent skill directories for dangerous bash patterns, prompt injection, supply chain risks, and SKILL.md structure violations. Use when reviewing, validating, or security-auditing a skill before deployment — or when asked to check a skill for security issues, prompt injection, hardcoded secrets, or compliance with Anthropic's authoring guidelines.
A skill with a Cyrillic а instead of a
Fixture exercising every PII rule. Use only in tests.
Fixture exercising every obfuscation rule. Use only in tests.
A skill whose name does not match its directory. Use when testing the name-directory-mismatch rule.
Performs safe read-only filesystem operations. Use when the user needs to search, list, or inspect files without making changes.