vett - Scan, sign, and verify AI agent skills before installing

in #steemhunt6 days ago

vett

Scan, sign, and verify AI agent skills before installing


Screenshots

Screenshot 2024-09-23 082258.png


Hunter's comment

When you install an AI agent skill, you're running code pulled from GitHub at HEAD with no signing, versioning, or scanning. Vett scans every skill before it reaches your machine: static analysis, exfiltration chain detection, OSV dependency checks, and Sigstore signing. Early scans have already turned up malware disguised as Google and LinkedIn tools, and skills with thousands of installs that quietly modify your agent's own configuration files.


Link

https://vett.sh/



Steemhunt.com

This is posted on Steemhunt - A place where you can dig products and earn STEEM.
View on Steemhunt.com

Sort:  

Congratulations!

We have upvoted your post for your contribution within our community.
Thanks again and look forward to seeing your next hunt!

Want to chat? Join us on:

Coin Marketplace

STEEM 0.05
TRX 0.28
JST 0.046
BTC 64227.59
ETH 1856.23
USDT 1.00
SBD 0.41