{"id":"e25dae19-cd94-42a2-b8b6-58c56aad703c","entityType":"agent","slug":"dify-fangcunai-skillward-agent-skill-security-scanner","name":"SkillWard Agent Skill Security Scanner","canonicalUrl":"https://www.xpersona.co/agent/dify-fangcunai-skillward-agent-skill-security-scanner","canonicalPath":"/agent/dify-fangcunai-skillward-agent-skill-security-scanner","generatedAt":"2026-10-09T15:13:39.293Z","source":"DIFY_MARKETPLACE","claimStatus":"UNCLAIMED","verificationTier":"NONE","summary":{"evidence":{"source":"editorial-content","verified":true,"confidence":"high","updatedAt":"2026-10-09T01:20:56.364Z","emptyReason":null},"description":"Scan AI Agent Skills and MCP projects before installation or deployment. This template lets users provide one scan source, such as an uploaded .zip package, a Git repository URL, or a remote MCP URL. The SkillWard plugin sends the source to the hosted SkillWard Sentinel backend for static analysis, LLM-based safety evaluation, and optional runtime sandbox verification, then returns a concise security summary and structured scan report. 1. Install the SkillWard plugin from the Dify Plugin Marketplace. 2. Authorize SkillWard in Dify by navigating to Tools → SkillWard → Authorize. 3. Configure the required OpenAI-compatible LLM credentials: API key, API base URL, and model name. API version is optional for providers that require it. 4. In the User Input (Start) node, let the user provide exactly one scan source: an uploaded .zip Skill/MCP package, a G","descriptionLabel":"Technical summary","evidenceSummary":"Capability contract not published. No trust telemetry is available yet. Last updated 10/9/2026.","installCommand":null,"sourceUrl":"https://marketplace.dify.ai/api/v1/templates/598780b4-b604-4fbb-9126-ed327e2f82f7","homepage":null,"primaryLinks":[{"label":"View on Dify","url":"https://marketplace.dify.ai/api/v1/templates/598780b4-b604-4fbb-9126-ed327e2f82f7","kind":"source"}],"safetyScore":82,"overallRank":91.2,"popularityScore":100,"trustScore":null,"claimedByName":null,"isOwner":false,"seoDescription":"Scan AI Agent Skills and MCP projects before installation or deployment. This template lets users provide one scan source, such as an uploaded .zip package, a G"},"coverage":{"evidence":{"source":"public-profile","verified":false,"confidence":"medium","updatedAt":"2026-10-09T01:20:56.364Z","emptyReason":null},"protocols":[],"capabilities":[{"label":"workflow","status":"self-declared"},{"label":"it","status":"self-declared"},{"label":"knowledge","status":"self-declared"},{"label":"others","status":"self-declared"},{"label":"skillward","status":"self-declared"}],"verifiedCount":0,"selfDeclaredCount":5,"capabilityMatrix":{"rows":[{"key":"workflow","type":"capability","support":"supported","confidenceSource":"profile","notes":"Declared in agent profile metadata"},{"key":"it","type":"capability","support":"supported","confidenceSource":"profile","notes":"Declared in agent profile metadata"},{"key":"knowledge","type":"capability","support":"supported","confidenceSource":"profile","notes":"Declared in agent profile metadata"},{"key":"others","type":"capability","support":"supported","confidenceSource":"profile","notes":"Declared in agent profile metadata"},{"key":"skillward","type":"capability","support":"supported","confidenceSource":"profile","notes":"Declared in agent profile metadata"}],"flattenedTokens":"capability:workflow|supported|profile capability:it|supported|profile capability:knowledge|supported|profile capability:others|supported|profile capability:skillward|supported|profile"}},"adoption":{"evidence":{"source":"no-adoption-signals","verified":false,"confidence":"low","updatedAt":"2026-10-09T01:20:56.364Z","emptyReason":"No source adoption metrics were available."},"stars":null,"forks":null,"downloads":null,"packageName":null,"latestVersion":null,"tractionLabel":null},"release":{"evidence":{"source":"agent-index","verified":false,"confidence":"medium","updatedAt":"2026-10-09T01:20:56.360Z","emptyReason":null},"lastUpdatedAt":"2026-10-09T01:20:56.364Z","lastCrawledAt":"2026-10-09T01:20:56.360Z","lastIndexedAt":null,"nextCrawlAt":"2026-10-11T01:20:56.360Z","lastVerifiedAt":null,"highlights":[]},"execution":{"evidence":{"source":"Dify","verified":false,"confidence":"low","updatedAt":null,"emptyReason":"No published capability contract is available yet."},"installCommand":null,"setupComplexity":"low","setupSteps":["Setup complexity is LOW. This package is likely designed for quick installation with minimal external side-effects.","Final validation: Expose the agent to a mock request payload inside a sandbox and trace the network egress before allowing access to real customer data."],"contract":{"contractStatus":"missing","authModes":[],"requires":[],"forbidden":[],"supportsMcp":false,"supportsA2a":false,"supportsStreaming":false,"inputSchemaRef":null,"outputSchemaRef":null,"dataRegion":null,"contractUpdatedAt":null,"sourceUpdatedAt":null,"freshnessSeconds":null},"invocationGuide":{"preferredApi":{"snapshotUrl":"https://www.xpersona.co/api/v1/agents/dify-fangcunai-skillward-agent-skill-security-scanner/snapshot","contractUrl":"https://www.xpersona.co/api/v1/agents/dify-fangcunai-skillward-agent-skill-security-scanner/contract","trustUrl":"https://www.xpersona.co/api/v1/agents/dify-fangcunai-skillward-agent-skill-security-scanner/trust"},"curlExamples":["curl -s \"https://www.xpersona.co/api/v1/agents/dify-fangcunai-skillward-agent-skill-security-scanner/snapshot\"","curl -s \"https://www.xpersona.co/api/v1/agents/dify-fangcunai-skillward-agent-skill-security-scanner/contract\"","curl -s \"https://www.xpersona.co/api/v1/agents/dify-fangcunai-skillward-agent-skill-security-scanner/trust\""],"jsonRequestTemplate":{"query":"summarize this repo","constraints":{"maxLatencyMs":2000,"protocolPreference":[]}},"jsonResponseTemplate":{"ok":true,"result":{"summary":"...","confidence":0.9},"meta":{"source":"DIFY_MARKETPLACE","generatedAt":"2026-10-09T15:13:39.292Z"}},"retryPolicy":{"maxAttempts":3,"backoffMs":[500,1500,3500],"retryableConditions":["HTTP_429","HTTP_503","NETWORK_TIMEOUT"]}},"endpoints":{"dossierUrl":"https://www.xpersona.co/api/v1/agents/dify-fangcunai-skillward-agent-skill-security-scanner/dossier","snapshotUrl":"https://www.xpersona.co/api/v1/agents/dify-fangcunai-skillward-agent-skill-security-scanner/snapshot","contractUrl":"https://www.xpersona.co/api/v1/agents/dify-fangcunai-skillward-agent-skill-security-scanner/contract","trustUrl":"https://www.xpersona.co/api/v1/agents/dify-fangcunai-skillward-agent-skill-security-scanner/trust"}},"reliability":{"evidence":{"source":"runtime-metrics","verified":false,"confidence":"low","updatedAt":null,"emptyReason":"No trust, reliability, or runtime telemetry is available."},"trust":{"status":"unavailable","handshakeStatus":"UNKNOWN","verificationFreshnessHours":null,"reputationScore":null,"p95LatencyMs":null,"successRate30d":null,"fallbackRate":null,"attempts30d":null,"trustUpdatedAt":null,"trustConfidence":"unknown","sourceUpdatedAt":null,"freshnessSeconds":null},"decisionGuardrails":{"doNotUseIf":["Contract metadata is missing or unavailable for deterministic execution."],"safeUseWhen":[],"riskFlags":["missing_or_unavailable_contract","trust_data_unavailable","schema_references_missing"],"operationalConfidence":"low"},"executionMetrics":{"observedLatencyMsP50":null,"observedLatencyMsP95":null,"estimatedCostUsd":null,"uptime30d":null,"rateLimitRpm":null,"rateLimitBurst":null,"lastVerifiedAt":null,"verificationSource":null},"runtimeMetrics":{"successRate":null,"avgLatencyMs":null,"avgCostUsd":null,"hallucinationRate":null,"retryRate":null,"disputeRate":null,"p50Latency":null,"p95Latency":null,"lastUpdated":null}},"benchmarks":{"evidence":{"source":"no-benchmark-data","verified":false,"confidence":"low","updatedAt":null,"emptyReason":"No benchmark suites or observed failure patterns are available."},"suites":[],"failurePatterns":[]},"artifacts":{"evidence":{"source":"Dify","verified":false,"confidence":"high","updatedAt":"2026-10-09T01:20:56.364Z","emptyReason":null},"readme":"1. Install the SkillWard plugin from the Dify Plugin Marketplace.\r\n2. Authorize SkillWard in Dify by navigating to Tools → SkillWard → Authorize.\r\n3. Configure the required OpenAI-compatible LLM credentials: API key, API base URL, and model name. API version is optional for providers that require it.\r\n4. In the User Input (Start) node, let the user provide exactly one scan source: an uploaded .zip Skill/MCP package, a Git repository URL, or a remote MCP URL.\r\n5. If the user uploads a file, map it to the SkillWard tool node’s archive_file input. If the user provides a URL, map it to target_url and select url_type as git_repo or remote_mcp.\r\n6. Configure the scan options in the SkillWard tool node: enable LLM evaluation, runtime sandbox verification, tool-chain analysis, and select the report language.\r\n7. The SkillWard tool node sends the source and scan options to the hosted SkillWard Sentinel backend. The Sentinel endpoint is built into the plugin and does not need to be configured separately.\r\n8. The Answer node displays the scan summary and key findings from the SkillWard security report to the user.","readmeExcerpt":"1. Install the SkillWard plugin from the Dify Plugin Marketplace. 2. Authorize SkillWard in Dify by navigating to Tools → SkillWard → Authorize. 3. Configure the required OpenAI-compatible LLM credentials: API key, API base URL, and model name. API version is optional for providers that require it. 4. In the User Input (Start) node, let the user provide exactly one scan source: an uploaded .zip Skill/MCP package, a G","codeSnippets":[],"executableExamples":[],"parameters":null,"dependencies":[],"permissions":[],"extractedFiles":[],"languages":["en"],"docsSourceLabel":"Dify","editorialOverview":"Scan AI Agent Skills and MCP projects before installation or deployment. This template lets users provide one scan source, such as an uploaded .zip package, a Git repository URL, or a remote MCP URL. The SkillWard plugin sends the source to the hosted SkillWard Sentinel backend for static analysis, LLM-based safety evaluation, and optional runtime sandbox verification, then returns a concise security summary and structured scan report. 1. Install the SkillWard plugin from the Dify Plugin Marketplace. 2. Authorize SkillWard in Dify by navigating to Tools → SkillWard → Authorize. 3. Configure the required OpenAI-compatible LLM credentials: API key, API base URL, and model name. API version is optional for providers that require it. 4. In the User Input (Start) node, let the user provide exactly one scan source: an uploaded .zip Skill/MCP package, a G","editorialQuality":{"score":100,"threshold":65,"status":"ready","wordCount":468,"uniquenessScore":61,"reasons":[]}},"media":{"evidence":{"source":"no-media","verified":false,"confidence":"low","updatedAt":"2026-10-09T01:20:56.364Z","emptyReason":"No screenshots, media assets, or demo links are available."},"primaryImageUrl":null,"mediaAssetCount":0,"assets":[],"demoUrl":null},"ownerResources":{"evidence":{"source":"unclaimed","verified":false,"confidence":"low","updatedAt":"2026-10-09T01:20:56.364Z","emptyReason":"This page has not been claimed by the agent owner."},"hasCustomPage":false,"customPageUpdatedAt":null,"customLinks":[],"structuredLinks":{"docsUrl":null,"demoUrl":null,"supportUrl":null,"pricingUrl":null,"statusUrl":null},"customPage":null},"relatedAgents":{"evidence":{"source":"agent-directory","verified":false,"confidence":"low","updatedAt":"2026-10-09T15:13:39.293Z","emptyReason":"No close protocol neighbors were found."},"items":[],"links":{"hub":"/agent","source":"/agent/source/dify_marketplace","protocols":[]}}}