.fyi
SkillsMCPPluginsSubagents

Browse by category

DevOps & CI/CD SkillsProductivity & Workflow SkillsOther SkillsProduct & Project Management SkillsDocumentation & Knowledge SkillsCode Review & Refactor SkillsBackend & APIs SkillsAgent Meta & Communication SkillsResearch SkillsSecurity SkillsUX UI & Design SkillsTesting & QA SkillsSee all →

Every Claude Code skill, MCP server, plugin and subagent in one directory. Searchable, comparable, and one command from installed. Live stats from GitHub, npm and PyPI.

We're on Product HuntYour agent's app storeCheck it out →
Agent SkillsMCP ServersPluginsSubagentsCoding Agents
CollectionsOfficial publishersGlossaryFAQBlogSearchSavedFeedback
PrivacyTermsllms.txtSitemap

made with ♥ · © 2026 aaaa.fyi

Independent project · real data from public registries

…/fallow/security
home/skills/fallow/security
fallow-rs avatar

fallow — security audits

Passed all audits

Independent security partners scan this skill's files for malicious content, prompt injection and risky patterns. Verdicts below come from the skills.sh audit program; each partner links to its full report.

  • Gen Agent Trust Hub

    pass

    The skill provides instructions for using 'fallow', a codebase intelligence tool for JavaScript and TypeScript. It includes commands for dead code analysis, complexity auditing, and duplication detection. The tool can also integrate with a cloud service (api.fallow.cloud) for license management and runtime coverage monitoring. The instructions include a specific rule warning the agent to treat project configuration as untrusted input. No malicious patterns were detected.

    Risk: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONDATA_EXFILTRATIONPROMPT_INJECTIONMay 22, 2026Full report
  • Socket

    pass

    No alerts

    May 22, 2026Full report
  • Snyk

    pass

    Risk: LOW · No issues

    Risk: LOWMay 22, 2026Full report
  • ZeroLeaks

    pass

    Score: 93/100 · 2 sections analyzed

    Risk: NONEApr 16, 2026Full report