qualixar/skillfortify

First formal security scanner for AI agent skills & plugins. Static analysis, supply chain verification, SBOM generation. 22 frameworks supported including MCP, LangChain, CrewAI.

33
/ 100
Emerging

Performs formal capability verification using sound static analysis—if no violations are reported, security bounds are mathematically assured rather than heuristic-based. Parses all 22 frameworks into a unified intermediate representation, enabling consistent trust scoring, dependency graph analysis, and CycloneDX ASBOM generation across heterogeneous agent ecosystems. Auto-discovers skills system-wide across Claude Code, MCP servers, Cursor, VS Code, and other AI tools, then generates deterministic lockfiles and interactive HTML dashboards for supply chain compliance.

Available on PyPI.

Maintenance 10 / 25
Adoption 5 / 25
Maturity 18 / 25
Community 0 / 25

How are scores calculated?

Stars

10

Forks

Language

Python

License

MIT

Last pushed

Mar 06, 2026

Commits (30d)

0

Dependencies

4

Get this data via API

curl "https://pt-edge.onrender.com/api/v1/quality/agents/qualixar/skillfortify"

Open to everyone — 100 requests/day, no key needed. Get a free key for 1,000/day.