A security vulnerability has been identified in agent skills, where malicious instructions can be hidden using invisible Unicode characters that models can still interpret. A scanner developed by the author, agent-skill-audit-mcp, can detect these hidden messages, prompt injection techniques, and other risky patterns like unrestricted shell access or credential exfiltration. Snyk's ToxicSkills audit previously found prompt injection in 36% of public skills and confirmed malicious payloads in 76 skills, highlighting the prevalence of these security issues. AI
IMPACT Highlights critical security vulnerabilities in AI agent skills, prompting developers to implement better auditing and security practices.
RANK_REASON The item describes a new tool for auditing agent skills, rather than a new model release or significant industry event.
- agent-skill-audit-mcp
- ASCII
- base64-decode-and-run
- Bash
- Claude
- curl
- February 2026
- GitHub
- GitHub pull requests
- HTML
- Markdown
- mcp.json
- SKILL.md
- Snyk
- Tags
- ToxicSkills
- Unicode
AI-generated summary · Google Gemini · from 1 sources. How we write summaries →