Works with the AI tools you already use

    Claude CodeClaude CodeCursorCursorCodex CLICodex CLIGitHub CopilotGitHub CopilotGemini CLIGemini CLI+20 more

    skill validator antivirus

    3

    Validates AI skills for malware and audits domain security configurations via MCP.

    Free

    0 installsSecurity scanned
    skill validator antivirus

    skill validator antivirus

    Example session with this skill installed

    Verify the skill code at https://github.com/example/repo and check if the domain is correctly configured.

    • Read your context and instructions
    • Compiled the validator antivirus

    Validation complete. The domain has a valid SSL certificate and correct SPF records. No malware signatures were detected in the skill code. Cache used for session: session_123.

    Connects securely to your tools. The creator never sees your data.

    About this skill

    The problem

    Installing third-party AI skills introduces security risks, including malware execution or unauthorized system actions. Manually auditing skill code for malicious intent is time consuming and prone to missing subtle vulnerabilities.

    What it does

    • Scans skill source code for malware signatures and unauthorized action patterns.
    • Performs deep domain audits including SSL certificate reviews and configuration checks.
    • Verifies DNS records, including SPF and DMARC settings, to ensure domain integrity.
    • Manages session-based caching to provide fast lookups while allowing forced fresh audits.
    • Standardizes security reporting by translating raw tool outputs into actionable summaries.

    Frameworks & tools

    This skill requires the skill_validator MCP server and a VIRUSTOTAL_API_KEY for external threat intelligence.

    Why this beats prompting it yourself

    A standard prompt lacks the specialized logic required to interface with external security APIs and manage stateful session memory. This skill ensures consistent parameter handling for the MCP tool and prevents the LLM from hallucinating security results when upstream services are unavailable.

    Use cases

    • Audit a third-party skill's code before allowing it to access your environment.
    • Check a domain's SSL and DNS configuration to verify identity.
    • Verify email security protocols like SPF and DMARC for a specific host.
    • Perform batch security reviews of skills across different development sessions.

    Known limitations

    Requires an active VirusTotal API key configured in a .env file. The skill cannot perform audits if upstream security services are offline or rate-limited.

    How to install

    Works the same in every agent - Claude, Cursor, Codex, Copilot and 20+ more.

    ~30 seconds
    1. 1

      Download the ZIP

      Free skills download straight away. Paid skills unlock right after purchase.

    2. 2

      Unzip into your skills folder

      Every agent reads skills from one folder on your machine. Drop the unzipped folder in there.

    3. 3

      Ask your agent to use it

      Restart the agent if it was already running. It picks the skill up automatically - no config needed.

    Skills folder by agent

    Click the path to copy it. Create the folder if it does not exist yet.

    Reviews

    No reviews yet

    Be one of the first to try it. Every listed skill passes our trust checks below.

    Security scanned

    Passed our 8-point scan before listing

    Fresh listing

    Recently published to Agensi

    Free forever

    No account required to browse

    Trust & safety

    Security scanned

    Verified clean 1 month ago

    • Free to download with an account

    Listed1 month ago
    Updated1 month ago

    Frequently Asked Questions