Skip to content
InfoNews

StepSecurity Now Inventories AI Agent Skills in Your GitHub Repositories and on Developer Machines

Published
Record updated
View JSON

Summary

StepSecurity now gives security teams an inventory of AI agent skills on developer machines and in GitHub repositories. Dev Machine Guard scans supported locations on developer devices, including ~/.agents/skills, agent-specific directories such as ~/.claude/skills, project-level skill folders, the skills.sh lock file, and skills supplied by installed Claude Code and Codex plugins. A new Agent Skills page under GitHub shows skills committed to an organization's repositories on GitHub.com.