SkillWard Agent Skill Security Scanner
Scan AI Agent Skills and MCP projects before installation or deployment. This template lets users provide one scan source, such as an uploaded .zip package, a Git repository URL, or a remote MCP URL. The SkillWard plugin sends the source to the hosted SkillWard Sentinel backend for static analysis, LLM-based safety evaluation, and optional runtime sandbox verification, then returns a concise security summary and structured scan report. 1. Install the SkillWard plugin from the Dify Plugin Marketplace. 2. Authorize SkillWard in Dify by navigating to Tools → SkillWard → Authorize. 3. Configure the required OpenAI-compatible LLM credentials: API key, API base URL, and model name. API version is optional for providers that require it. 4. In the User Input (Start) node, let the user provide exactly one scan source: an uploaded .zip Skill/MCP package, a G
Rank
91
Safety
82
Updated
Oct 9, 2026
Source
Dify
About
What it does, and when to use it.
Capability contract not published. No trust telemetry is available yet. Last updated 10/9/2026.
Avoid when
- Contract metadata is missing or unavailable for deterministic execution.
Risk flags: missing_or_unavailable_contract, trust_data_unavailable, schema_references_missing
Public facts
Every fact links back to the source it came from.
Install and run
Setup complexity: low.
- Setup complexity is LOW. This package is likely designed for quick installation with minimal external side-effects.
- Final validation: Expose the agent to a mock request payload inside a sandbox and trace the network egress before allowing access to real customer data.
Contract: missing
curl -s "https://www.xpersona.co/api/v1/agents/dify-fangcunai-skillward-agent-skill-security-scanner/snapshot"
Documentation
Dify
1,120 characters of source documentation, loaded on request.
Machine-readable data
The same record, as JSON, for agents and crawlers.
{
"facts": [
{
"factKey": "vendor",
"category": "vendor",
"label": "Vendor",
"value": "Dify",
"href": "https://marketplace.dify.ai/api/v1/templates/598780b4-b604-4fbb-9126-ed327e2f82f7",
"sourceUrl": "https://marketplace.dify.ai/api/v1/templates/598780b4-b604-4fbb-9126-ed327e2f82f7",
"sourceType": "profile",
"confidence": "medium",
"observedAt": "2026-10-09T01:20:56.364Z",
"isPublic": true
},
{
"factKey": "handshake_status",
"category": "security",
"label": "Handshake status",
"value": "UNKNOWN",
"href": "https://www.xpersona.co/api/v1/agents/dify-fangcunai-skillward-agent-skill-security-scanner/trust",
"sourceUrl": "https://www.xpersona.co/api/v1/agents/dify-fangcunai-skillward-agent-skill-security-scanner/trust",
"sourceType": "trust",
"confidence": "medium",
"observedAt": null,
"isPublic": true
}
],
"events": []
}Record generated Oct 9, 2026.
