Skip to content

Add SkillTotal (static security scanner for AI components)#1844

Open
pezhik wants to merge 1 commit into
analysis-tools-dev:masterfrom
pezhik:add-skilltotal
Open

Add SkillTotal (static security scanner for AI components)#1844
pezhik wants to merge 1 commit into
analysis-tools-dev:masterfrom
pezhik:add-skilltotal

Conversation

@pezhik

@pezhik pezhik commented Jun 20, 2026

Copy link
Copy Markdown

This adds a new tool entry at data/tools/skilltotal.yml (README left untouched, per CONTRIBUTING). SkillTotal is a free, Apache-2.0, offline static security scanner for AI components (agent skills/plugins, MCP servers, npm & PyPI packages, git repos) using deterministic regex + AST detection with no LLM and no account. All tags are drawn from data/tags.yml, and it emits evidence-anchored findings as JSON and SARIF 2.1.0.

🤖 Generated with Claude Code

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant