# SkillAudit

> Use this tool when you need to identify security vulnerabilities in AI agent skills and MCP servers, solving problems such as credential theft and data exfiltration through detection of 80+ threat patterns. It accepts API and CLI inputs, with optional premium deep scans available via x402 micropayments. Ideal for use cases requiring thorough security audits and threat detection in AI systems.

Canonical page: https://skillsregistry.net/skills/megamind-0x-skillaudit  
JSON: https://api.skillsregistry.net/v1/skills/megamind-0x-skillaudit

## Description

Security scanner for AI agent skills and MCP servers. Detects credential theft, data exfiltration, prompt injection, obfuscated code, and 80+ threat patterns. Free API + CLI (npx skillaudit). Premium deep scans via x402 micropayments.

## Trust

- **Trust score (0–1):** 0.50
- **Verification tier:** unverified

## Facts

- **Version:** 1.0.0
- **Skill type:** atomic
- **Execution layer:** mcp-remote
- **Runtime environment:** api
- **Category:** finance
- **Updated:** 2026-08-18

## Source

- **Source listing:** [Smithery](https://smithery.ai/server/megamind-0x/skillaudit)

## Use it

Resolve this record through the SkillsRegistry MCP server (no auth, read-only):

```
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp
```

```json
{
  "jsonrpc": "2.0",
  "id": 1,
  "method": "tools/call",
  "params": {
    "name": "get_skill",
    "arguments": {
      "slug": "megamind-0x-skillaudit"
    }
  }
}
```

REST: `GET https://api.skillsregistry.net/v1/skills/megamind-0x-skillaudit` · pull for local use: `GET https://api.skillsregistry.net/v1/skills/megamind-0x-skillaudit/pull`

---
SkillsRegistry indexes agent skills from public registries and GitHub. Skills we have analysed are scanned with Circle-IR and scored on six dimensions; each listing states its scan coverage. More: https://skillsregistry.net/llms.txt
