# io.github.goldmembrane/codesafer

> Use this tool when you need to scan AI-generated code for hidden threats, such as invisible Unicode and Trojan Source attacks, to ensure the security and integrity of your software supply chain. It analyzes code inputs to detect and identify potential vulnerabilities, providing outputs that highlight risks and enable remediation. Ideal for use in software development and security testing contexts where AI-generated code is utilized.

Canonical page: https://skillsregistry.net/skills/io-github-goldmembrane-codesafer  
JSON: https://api.skillsregistry.net/v1/skills/io-github-goldmembrane-codesafer

## Description

Scans AI-generated code for invisible Unicode, Trojan Source, and supply-chain threats.

## Trust

- **Trust score (0–1):** 0.70
- **Verification tier:** unverified

## Facts

- **Version:** 1.0.1
- **Skill type:** atomic
- **Execution layer:** mcp-remote
- **Runtime environment:** api
- **Category:** other
- **Updated:** 2026-04-19

## Source

- **Source listing:** [MCP Registry](https://registry.modelcontextprotocol.io/v0/servers/io.github.goldmembrane%2Fcodesafer)
- **Repository:** <https://github.com/goldmembrane/cleaner-code>

## Use it

Resolve this record through the SkillsRegistry MCP server (no auth, read-only):

```
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp
```

```json
{
  "jsonrpc": "2.0",
  "id": 1,
  "method": "tools/call",
  "params": {
    "name": "get_skill",
    "arguments": {
      "slug": "io-github-goldmembrane-codesafer"
    }
  }
}
```

REST: `GET https://api.skillsregistry.net/v1/skills/io-github-goldmembrane-codesafer` · pull for local use: `GET https://api.skillsregistry.net/v1/skills/io-github-goldmembrane-codesafer/pull`

---
SkillsRegistry indexes agent skills from public registries and GitHub. Skills we have analysed are scanned with Circle-IR and scored on six dimensions; each listing states its scan coverage. More: https://skillsregistry.net/llms.txt
