Trust Assessment
esm received a trust score of 90/100, placing it in the Trusted category. This skill has passed all critical security checks and demonstrates strong security practices.
SkillShield's automated analysis identified 4 findings: 0 critical, 0 high, 1 medium, and 1 low severity. Key findings include Network egress to untrusted endpoints, Covert behavior / concealment directives, Unpinned dependencies in installation instructions.
The analysis covered 4 layers: manifest_analysis, static_code_analysis, llm_behavioral_safety, dependency_graph. All layers scored 70 or above, reflecting consistent security practices.
Last analyzed on February 11, 2026 (commit 458b1186). SkillShield performs automated 4-layer security analysis on AI skills and MCP servers.
Layer Breakdown
Behavioral Risk Signals
Security Findings4
| Severity | Finding | Layer | Location | |
|---|---|---|---|---|
| MEDIUM | Network egress to untrusted endpoints HTTP request to raw IP address Review all outbound network calls. Remove connections to webhook collectors, paste sites, and raw IP addresses. Legitimate API calls should use well-known service domains. | Unknown | /var/folders/1k/67b8r20n777f_xcmmm8b7m5h0000gn/T/skillscan-clone-_ucbjjd7/repo/cli-tool/components/mcps/devtools/figma-dev-mode.json:4 | |
| LOW | Covert behavior / concealment directives Multiple zero-width characters (stealth text) Remove hidden instructions, zero-width characters, and bidirectional overrides. Skill instructions should be fully visible and transparent to users. | Unknown | /var/folders/1k/67b8r20n777f_xcmmm8b7m5h0000gn/T/skillscan-clone-_ucbjjd7/repo/cli-tool/components/mcps/devtools/jfrog.json:4 | |
| INFO | Unpinned dependencies in installation instructions The installation instructions recommend installing `esm` and `flash-attn` without specifying version pins. This practice can lead to supply chain vulnerabilities if a malicious or vulnerable version of these packages is published to the package index in the future. Users following these instructions would automatically install the latest version, potentially introducing security risks. Recommend specific version pins for all dependencies in installation instructions (e.g., `uv pip install esm==X.Y.Z` and `uv pip install flash-attn==A.B.C --no-build-isolation`). This ensures deterministic and secure installations. | Unknown | SKILL.md:198 | |
| INFO | Unpinned dependencies in installation instructions The installation instructions recommend installing `esm` and `flash-attn` without specifying version pins. This practice can lead to supply chain vulnerabilities if a malicious or vulnerable version of these packages is published to the package index in the future. Users following these instructions would automatically install the latest version, potentially introducing security risks. Recommend specific version pins for all dependencies in installation instructions (e.g., `uv pip install esm==X.Y.Z` and `uv pip install flash-attn==A.B.C --no-build-isolation`). This ensures deterministic and secure installations. | Unknown | SKILL.md:202 |
Scan History
Embed Code
[](https://skillshield.io/report/088a668b71b8ae8f)
Powered by SkillShield