Comprehensive Threat Detection
Six detection categories, 50+ patterns — catching the attacks that matter.
💉
Prompt Injection Detection
Catches role-override phrases, jailbreak attempts, and instruction hijacking patterns before they compromise your agent.
📡
Data Exfiltration Analysis
Identifies suspicious external network calls, fetch/curl patterns targeting unknown endpoints that could steal your data.
🔑
Secret & Key Detection
Scans for hardcoded API keys, tokens (sk-, ghp_, AKIA*), and credentials embedded in skill code.
⚡
Runtime Code Execution
Flags dangerous eval(), exec(), subprocess, and shell command patterns that could run arbitrary code on your system.
🗂️
File System Access
Detects attempts to read .env files, /etc/passwd, SSH keys, and other sensitive system files.
🔐
Obfuscation Detection
Uncovers base64-encoded payloads and other obfuscation techniques used to hide malicious intent.