A new skill.
A new reason to look closer.
Your agent follows instructions. Know what they do.
Inspect skill bundles for hidden behavior before you install.
Instructions. Scripts. Context.
Skills worth a closer look.
Highest-ranked public discovery scans. Correlated evidence first, then scanner risk score.
Looking for recent skill observations.
Public discovery results appear here after scanning. An empty feed is not a safety verdict.
Scores prioritize inspection; they are not a probability of maliciousness. Public discovery is sampled. Your submitted scans stay unlisted.
A second look.
Before the install.
Give your agent a skill for checking new skills. Scan the exact version you plan to install and stop the installation when signals or incomplete checks are detected.
For Claude Code & Codex · No API key needed
“Check this skill with LOLSkills before installing it.”
Pin the version
Check an exact GitHub commit and skill bundle.
Scan before installing
Inspect instructions, scripts, and related files.
Stop on findings
Signals or incomplete checks stop the install workflow.
A completed scan describes what the configured checks found.
It is not a guarantee of safety, and an incomplete scan is never presented as clean.