Skillsmcp — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited Skillsmcp (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
MCP server that exposes Agent Skills to AI agents via the Model Context Protocol.
Agent Skills are reusable, portable instruction sets that guide AI coding agents. This server makes them discoverable and activatable as MCP tools, following the progressive disclosure pattern from the Agent Skills specification.
Install with Homebrew:
brew install uvuv tool install git+https://github.com/aviddiviner/skillsmcp.gitThis installs skillsmcp as a command on your PATH. To update later:
uv tool upgrade skillsmcpAdd to your settings (~/.config/zed/settings.json):
{
"context_servers": {
"skillsmcp": {
"command": "uvx",
"args": ["skillsmcp"]
}
}
}Add to your Claude config (~/Library/Application Support/Claude/claude_desktop_config.json):
{
"mcpServers": {
"skillsmcp": {
"command": "uvx",
"args": ["skillsmcp"]
}
}
}Any client that supports MCP's stdio transport can use this server. Run it directly:
uvx skillsmcpThe server exposes three MCP tools:
| Tool | Description |
|---|---|
list_skills | Discover all available skills with names and descriptions |
activate_skill | Load a skill's full instructions by name |
read_skill_file | Read supporting files from a skill's directory |
All tools accept an optional project_roots parameter — a list of project directories to scan for project-level skills. User-level skills (~/.agents/skills/, ~/.claude/skills/) are always included. When project_roots is not provided, the server falls back to its working directory.
Skills are directories containing a SKILL.md file with YAML frontmatter:
~/.agents/skills/
└── my-skill/
├── SKILL.md
├── scripts/
│ └── helper.py
└── references/
└── REFERENCE.mdExample SKILL.md:
---
name: my-skill
description: A short description of what this skill does and when to use it.
---
# My Skill
Instructions for the AI agent go here...The server scans the following directories in precedence order (first-found wins for name collisions):
<project>/.agents/skills/<project>/.claude/skills/~/.agents/skills/~/.claude/skills/Project-level skills override user-level skills with the same name.
git clone https://github.com/aviddiviner/skillsmcp.git
cd skillsmcp
# Install in development mode
uv sync
# Run the server directly
uv run skillsmcpMIT
~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.