Inventory the tools/functions an AI agent can call and audit their privileges, side effects, and approval requirements to find excessive-agency and least-privilege gaps. Use when reviewing an agent's tool/function surface.
$npx -y skills add jassics/awesome-claude-security --skill tool-permission-auditInstalls into the current project.
Run `npx skills use "https://github.com/jassics/awesome-claude-security" --skill "jassics/awesome-claude-security/tool-permission-audit"` and follow the generated skill instructions now. Read its complete output, redirecting it to a temporary file first if necessary. Resolve relative paths from the supporting-files directory it provides.
Use the skills in "https://github.com/jassics/awesome-claude-security" that are relevant to the current task. Run `npx skills add "https://github.com/jassics/awesome-claude-security"` and select the relevant skills, then follow their instructions.