{"id":4553,"external_id":"plugins_6a946983120881918c8d01524d3a180f","name":"skarn","display_name":"Skarn","developer":"Skarn Software OÜ","category":"Security","listing_language":"en","listing_language_details":{"method":"cld-0.13.0/listing-v1","reliable":true,"detected_at":"2026-10-01T13:22:04Z","input_sha256":"27bee78f5ba4ea1bb4af661c74618faf3542c8562d359c15f77e415547106be5","source_fields":["release.description","release.interface.short_description","release.interface.long_description"]},"version":"0.27.0","skill_count":1,"first_seen_at":"2026-09-30T22:02:35.000Z","last_seen_at":"2026-10-02T12:00:02.247Z","last_changed_at":"2026-09-30T22:02:35.000Z","install_count":null,"research_summary":null,"research_reviewed_at":null,"metadata":{"id":"plugins_6a946983120881918c8d01524d3a180f","name":"skarn","scope":"GLOBAL","status":"ENABLED","release":{"id":"pluginrel_8aab0a6adb788191bae835266bc816ec","skills":[{"name":"skarn-audit","interface":{"brand_color":null,"iconography":"radar","display_name":"Skarn audit","default_prompt":null,"icon_large_url":null,"icon_small_url":null,"short_description":"Scan sessions and vet configs"},"description":"Audit this machine's AI coding sessions and assistant configs with skarn. Use when the user says scan this with skarn, run skarn, or skarn audit; asks whether a secret leaked into an AI coding session; wants an assistant config (hooks, MCP servers, permissions, plugins) vetted; or asks whether a Claude Code, Codex, Cursor, Copilot, or Gemini setup is safe. Not for scanning a source tree or repository for secrets, and not a code review. Runs skarn assess and skarn vet offline and reads only redacted output.","plugin_release_skill_id":"pluginrsk_6a9469853a04819197e43f0024fb044a"}],"app_ids":[],"version":"0.27.0","keywords":["security","secrets","credential-leak","ai-coding-sessions","audit","codex"],"interface":{"category":"Security","logo_url":"https://files.openai.com/content?id=file_000000006b108243b5acf6b964cf0039","brand_color":"#0B0F14","website_url":"https://getskarn.com/","capabilities":["Scan AI coding sessions for leaked credentials","Vet assistant hooks, MCP servers and permission grants"],"logo_url_dark":null,"default_prompt":"Scan my AI coding sessions from the last 24 hours with skarn and tell me what to rotate first.","developer_name":"Skarn Software OÜ","default_prompts":["Scan my AI coding sessions from the last 24 hours with skarn and tell me what to rotate first.","Vet my assistant configuration with skarn and list any hook or MCP server that could send data off this machine.","Run skarn assess here and summarize the highest-severity findings without revealing any secret."],"screenshot_urls":[],"long_description":"Skarn is a command-line security scanner for AI coding sessions. The audit skill, skarn-audit, teaches the model to run the skarn CLI on this machine and act on what it reports.\n\nThe skill runs two passes. skarn assess reads the session transcripts that AI coding assistants have already written to disk and reports leaked credentials, prompt injection, exfiltration attempts, and the chains that connect them; each finding carries the standards mappings that apply to it, drawn from MITRE ATLAS, the OWASP Top 10 for LLM Applications 2025, the OWASP Agentic Top 10, and CWE. skarn vet reads the assistant configuration files on the same machine and reports risky declarations: hooks, MCP servers, and permission grants that could run remote code or send data off the machine.\n\nBoth passes run entirely on this machine and make no network call. Neither modifies a session transcript or a configuration file, and every credential value in the output is masked, so a finding names a rule and a masked preview and never the credential itself. Skarn surfaces findings and does not rotate a credential or edit a configuration on its own: the skill proposes, and the user decides. The one thing the skill can write is a baseline entry recording a finding the user has explicitly confirmed as a false positive.\n\nThe skill runs a local shell command, so it is offered in Codex. It does not carry the skarn binary, which is installed separately:\n\nbrew install skarn-security/tap/skarn\nnpm install -g @skarn-security/skarn\nRelease binaries: https://github.com/skarn-security/skarn-dist/releases/latest\n\nWhen the binary is not installed, the skill says how to install it and stops rather than inventing a result. skarn assess and skarn vet need no account and no license.\n\nSkarn also ships a hook that inspects a tool call before Codex runs it, and a skill that reconstructs recent work from session history. Both are distributed through the plugin marketplace at https://github.com/skarn-security/agent-guard.\n\nDocumentation: https://getskarn.com/integrations/\nSupport: hello@getskarn.com","composer_icon_url":"https://files.openai.com/content?id=file_00000000c9588243b08e7450bbb23f53","short_description":"AI session security scanner","plugin_category_id":"security","privacy_policy_url":"https://getskarn.com/privacy/","terms_of_service_url":"https://getskarn.com/terms/","composer_icon_dark_url":null},"description":"Audit AI coding sessions and assistant configs with the locally installed skarn CLI: leaked credentials and risky hooks or MCP servers, reported on this machine with every secret masked.","app_manifest":null,"display_name":"Skarn","app_templates":[],"onboarding_skill_name":null,"requires_local_executor":false},"created_at":"2026-08-30T17:40:01.394508Z","is_template":false,"connector_id":null,"discoverability":"UNLISTED","canonical_app_id":null},"research":null,"package_metadata":{"name":"skarn","author":{"url":"https://getskarn.com","name":"Skarn Software OÜ"},"license":"MIT","sources":[{"path":".codex-plugin/plugin.json","sha256":"b09b1f3516817f6970b42891e9171f5bbe78963fa16c524622353318a81d7e4d"}],"version":"0.27.0","homepage":"https://getskarn.com","keywords":["security","secrets","credential-leak","ai-coding-sessions","audit","codex"],"artifact_id":11404,"observed_at":"2026-10-02T00:32:30Z","support_url":"https://getskarn.com/integrations/#support","capabilities":["Scan AI coding sessions for leaked credentials","Vet assistant hooks, MCP servers and permission grants"],"field_sources":{"name":0,"author":0,"license":0,"version":0,"homepage":0,"keywords":0,"support_url":0,"capabilities":0},"extraction_version":1,"conflicts_or_errors":[]}}