All skills
simota avatar

/cull

@8e1f365
by shingo imotasimota/agent-skills85 stars
15

Scanning and eradicating supply-chain malware (Shai-Hulud/S1ngularity npm/PyPI worms): IoC scan, OS/IDE persistence, safe credential rotation. Not for SAST (Sentinel) or skill/MCP audit (Chain).

Use this Skill: https://skilld.dev/gh/simota/agent-skills/cull

This session only. Nothing lands on disk.

ARCHIVED_2026-08-19.md

≈173 tokens on demand. Your agent reads this file only when SKILL.md points to it.

Archive Record

  • Absorbed into: Chain[malware]
  • Archived: 2026-08-19
  • Retain through: 2026-11-17 (90 days; no automatic deletion)
  • Reason: Live supply-chain campaign IoC scanning, persistence-first eradication, gated credential rotation, propagation review, and hardening now live under the canonical skill/plugin/MCP supply-chain owner.

Reactivation

Restore with mv .archive/cull cull only when usage evidence shows that live package-malware response needs an independently routed owner. Re-add Pack/Profile membership, Nexus routing, boundary rows, catalogs, and cross-skill references; reconcile the capabilities copied into chain/; then run repository validation.

Source: SKILL.md on GitHub

1 alert1mo3 checks · Risk CRITICAL
  • Gen Agent Trust Hub1mo

    This skill is a security auditing tool designed to detect and remove supply-chain malware. While it accesses sensitive files and performs potentially destructive system commands, these actions are consistent with its purpose. A low severity is assigned due to the inherent risks of indirect prompt injection when processing untrusted system data.

  • Socket1mo

    No alerts

  • Snyk1mo

    Risk: LOW · No issues

Signed by skilld at 8e1f365. This ties the file your Agent reads to that commit on GitHub. It does not review the instructions.

Last checked against GitHub 2 days ago.

Activeupdated last month

README badge

README badge for simota/agent-skills/cull