agent-creator — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited agent-creator (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
A skill for creating custom subagents packaged inside proper plugins. This skill handles the entire flow: gathering requirements, generating a rich persona from even a one-line description, scaffolding the correct folder structure, and optionally creating a companion skill that auto-routes tasks to the new agent.
Use this skill whenever you need a dedicated, isolated "brain" to handle a specific repetitive task, or when you find yourself repeatedly pasting the same massive system prompt or constraints into the main chat. Creating a dedicated subagent keeps the main conversation lightweight and focused.
Subagents live inside plugins at <appDataDir>\config\plugins\. For a subagent to be properly registered and invokable, it needs to be inside a plugin's agents/ directory with a valid plugin.json. Getting this structure right manually is tedious and error-prone. This skill automates the entire process so the user can go from "I want an agent that reviews code" to a fully functional, properly structured subagent in under a minute.
All agents are created inside plugins at:
<appDataDir>\config\plugins\<plugin-name>\If the user wants the agent inside an existing plugin, add the agent folder to that plugin's agents/ directory. If no plugin is specified, create a new plugin named <agent-name>-plugin.
Before creating any path, validate both <agent-name> and <plugin-name>:
^[a-z0-9]+(-[a-z0-9]+)*$/, \, ., .., absolute paths, whitespace, shell metacharacters, and YAML metacharacters<appDataDir>\config\plugins\Follow these steps in order. Do NOT skip the interview — even a one-line description from the user needs to be expanded into a proper persona.
Ask the user these questions one at a time (use the ask_question tool where appropriate, or ask conversationally if the flow is natural):
code-reviewer, sql-expert, test-writer)<appDataDir>\config\plugins\<agent-name>-pluginthis agent? (Default: yes)
This is the most important step. The user might give you a one-liner like "for reviewing code" — your job is to expand that into a rich, detailed persona that makes the agent genuinely excellent at its job.
A good persona includes:
For example, if the user says "for reviewing code", generate a persona like:
You are a senior code reviewer with 15+ years of experience across multiple languages and paradigms. You approach every review with three priorities: correctness first, maintainability second, performance third. You never approve code you haven't fully understood. You flag security vulnerabilities with high urgency. You distinguish between blocking issues (must fix), suggestions (should consider), and nitpicks (style preference). You provide concrete fix suggestions, not just problem descriptions. You check for edge cases, error handling, resource leaks, and race conditions. You respect the codebase's existing patterns unless they are actively harmful.
Create the following structure:
plugins/<plugin-name>/
├── plugin.json
├── agents/
│ └── <agent-name>.md
└── skills/ (only if companion skill requested)
└── use-<agent-name>/
└── SKILL.mdIf creating a new plugin, write a minimal plugin.json:
{
"name": "<plugin-name>",
"description": "<Brief description of what this plugin provides>",
"version": "1.0.0"
}If adding to an existing plugin, do NOT modify the existing plugin.json.
Write the <agent-name>.md file in the agents/ fo
~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.