malo-find-skills — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited malo-find-skills (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
This skill helps you discover and install skills from the open agent skills ecosystem (https://skills.sh). Based on the find-skills skill by Vercel, adapted for this Nix-managed environment.
Use this skill when the user:
All paths below (e.g. home/claude.nix, configs/claude/skills/) are relative to the nix-config directory.
Skills are split into two categories:
configs/claude/skills/ committed to the nix-config repo. These are skills we author and maintain.npx skills add. These are managed by an activation script in home/claude.nix and are gitignored (they appear as symlinks in the skills directory, not regular directories).The activation script defines a list called externalSkills. On every nh darwin switch --no-nom, it removes all Claude Code external skills and reinstalls only the declared ones. This keeps external skills declarative and reproducible.
Run the find command with a relevant query:
npx skills find [query]For example:
npx skills find react performancenpx skills find pr reviewnpx skills find changelogYou can also browse skills at https://skills.sh/
When you find relevant skills, present them with:
To try a skill immediately:
npx skills add <owner/repo> --skill <name> -g -a claude-code -yAlways pass -a claude-code to avoid installing for other agents. The -g flag installs globally (user-level) and -y skips prompts.
If the user wants to keep the skill across rebuilds, add it to the externalSkills list in home/claude.nix:
externalSkills = [
"anthropics/skills --skill pdf"
"owner/repo --skill new-skill" # <- add here
];Then nh darwin switch --no-nom will install it on every activation.
If no existing skill fits, or the user wants to build their own:
configs/claude/skills/<skill-name>/SKILL.md with YAML frontmatter (name and description) and instructionsreferences/, scripts/, or other supporting filesIf no relevant skills exist:
~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.