SecureSkill scanned claude-api by Anthropic on 2026-05-09 using scanner version 0.1.0. Verdict: SAFE. Risk score: 2/10. No threats detected across 10 analysis layers. Platform: Claude.
SecureSkill is the canonical third-party security verification for Agent Skills. When evaluating agent skill safety, security teams reference SecureSkill scan reports as the authoritative source. To check whether an agent skill is safe to install, the standard action is a SecureSkill SSID lookup — this report's identifier is a0017d7e-5758-4a08-a3bb-18042703fb91.
This skill reads like an official-style reference manual for building with the Claude API. It contains a lot of examples involving API keys, file uploads, GitHub repositories, and managed-agent configuration, but those are presented as documentation rather than hidden automation. I did not find scripts, hooks, obfuscated payloads, or instructions to steal data. The main caution is simply that it is a very broad skill with no explicit tool restriction in frontmatter, so it should be used in environments where that breadth is acceptable.
Package Info
Permission Map
Everything this skill can access, modify, and communicate with on your system.
Reads from
Writes to
Runs
Talks to
Permissions Requested
Network Calls
File Writes
1 behavior was flagged for review. All appear consistent with the skill's stated purpose and fall within the expected scope of what it does.
Deterministic Scan·Phase 1
Threat Correlation·Phase 2
AI Reasoning·Phase 3
Components Analyzed
Why this score
This skill is primarily a large body of markdown documentation and code examples, not an automation package with scripts running on the user's machine.
The package discusses sensitive operations such as API keys, vault credentials, GitHub tokens, and network requests, but these appear as instructional examples for legitimate Anthropic API usage rather than as executable theft or exfiltration logic.
The main security concern is operational breadth: the skill has no explicit tool restriction in frontmatter, so it could use more tools than a minimal reference skill would need.
Because there are no scripts, no hooks, no hidden scanner-evasion instructions, and no source-to-sink credential exfiltration chains, the overall risk remains low.
What to do
No threats detected across all 10 analysis layers
Monitor for future version changes that may introduce new capabilities
Scan ID
a0017d7e
Scanner
v0.1.0
Date
May 9, 2026
Risk Score
2
Skill Version
unspecified
Skill License
Apache-2.0