PulseAugur
EN
LIVE 09:33:12

Majority of AI Agent Skills Lack Security Audits, Study Finds

A recent study, the Agent Skill Security Census, reveals that a significant majority of AI agent skills lack security audits, despite these audits being concentrated on the most installed applications. Of the nearly 80,000 listed skills, only 12.2% have undergone any audit, yet these audited skills account for over 83% of all installations. Furthermore, more than half of the audited skills carry risk flags, with major vendors like ByteDance Lark, Microsoft, Vercel, Anthropic, Google, and OpenAI appearing on the flagged list. AI

IMPACT Highlights critical security gaps in the AI agent ecosystem, potentially impacting user trust and adoption of AI tools.

RANK_REASON The item reports on a study analyzing the security of AI agent skills, including findings on audits and vulnerabilities. [lever_c_demoted from research: ic=1 ai=1.0]

Read on dev.to — Claude Code tag →

AI-generated summary · Google Gemini · from 1 sources. How we write summaries →

Majority of AI Agent Skills Lack Security Audits, Study Finds

COVERAGE [1]

  1. dev.to — Claude Code tag TIER_1 English(EN) · Skillselion ·

    87.8% of AI Agent Skills Have Never Been Audited: 41,791 Verdicts Across 79,848 Listings

    <p>Security audits of AI agent skills go where the installs are: the audited 12.2% of listings holds 83.3% of all installs, and the other 70,090 listings have no published review at all.</p> <p>That is the core finding of the <a href="https://skillselion.com/research/agent-skill-…