Awesome Agent Skills Security Awesome

πŸ›‘οΈ A curated list of resources on securing AI agent tool use and skill ecosystems β€” attacks, defenses, frameworks, benchmarks, and standards.

AI agents increasingly use external tools, plugins, and skills to interact with the world. This creates a new attack surface: agent skills security. This list covers the threats, defenses, and research landscape for securing these capabilities.

Contents


Threat Frameworks & Standards

Surveys & Systematizations

Attack Research

Prompt Injection via Tools

Tool Poisoning & Supply Chain

Privilege Escalation & Excessive Agency

Data Exfiltration & Privacy

Indirect Prompt Injection

Agent Deception & Manipulation