Comprehensive Threat Detection

Six detection categories, 50+ patterns — catching the attacks that matter.

💉

Prompt Injection Detection

Catches role-override phrases, jailbreak attempts, and instruction hijacking patterns before they compromise your agent.

📡

Data Exfiltration Analysis

Identifies suspicious external network calls, fetch/curl patterns targeting unknown endpoints that could steal your data.

🔑

Secret & Key Detection

Scans for hardcoded API keys, tokens (sk-, ghp_, AKIA*), and credentials embedded in skill code.

Runtime Code Execution

Flags dangerous eval(), exec(), subprocess, and shell command patterns that could run arbitrary code on your system.

🗂️

File System Access

Detects attempts to read .env files, /etc/passwd, SSH keys, and other sensitive system files.

🔐

Obfuscation Detection

Uncovers base64-encoded payloads and other obfuscation techniques used to hide malicious intent.