.fyi
SkillsMCPPluginsSubagents

Browse by category

DevOps & CI/CD SkillsProductivity & Workflow SkillsOther SkillsProduct & Project Management SkillsDocumentation & Knowledge SkillsCode Review & Refactor SkillsBackend & APIs SkillsAgent Meta & Communication SkillsResearch SkillsSecurity SkillsUX UI & Design SkillsTesting & QA SkillsSee all →

Every Claude Code skill, MCP server, plugin and subagent in one directory. Searchable, comparable, and one command from installed. Live stats from GitHub, npm and PyPI.

We're on Product HuntYour agent's app storeCheck it out →
Agent SkillsMCP ServersPluginsSubagentsCoding Agents
CollectionsOfficial publishersGlossaryFAQBlogSearchSavedFeedback
PrivacyTermsllms.txtSitemap

made with ♥ · © 2026 aaaa.fyi

Independent project · real data from public registries

…/experience-content-media-search/security
home/skills/experience-content-media-search/security
forcedotcom avatar

experience-content-media-search — security audits

Flagged by auditors

Independent security partners scan this skill's files for malicious content, prompt injection and risky patterns. Verdicts below come from the skills.sh audit program; each partner links to its full report.

  • Gen Agent Trust Hub

    pass

    This skill acts as a routing mechanism for searching and retrieving media from Salesforce CMS and Data 360. It enforces a strict workflow requiring user interaction before any search tools are invoked. No malicious code, exfiltration attempts, or unauthorized network operations were detected. The skill correctly identifies its dependencies and limits its scope to existing asset retrieval. Identified risks, such as indirect prompt injection and handling of authenticated URLs, are managed through the required user-in-the-loop search and selection steps.

    Risk: SAFEPROMPT_INJECTIONDATA_EXFILTRATIONJun 26, 2026Full report
  • Socket

    pass

    No alerts

    Jun 26, 2026Full report
  • Snyk

    fail

    Risk: HIGH · 1 issue

    Risk: HIGHJun 26, 2026Full report