|8 min read
Snyk's ToxicSkills Audit: 13.4% of Public Skills Are Vulnerable
I publish Claude Code skills and install other people's. Then Snyk audited 3,984 public ones: 13.4% had critical vulnerabilities, 76 were confirmed malicious, and ClawHavoc is the scarier story underneath. Here's the supply-chain hygiene I now refuse to skip.
[AI & Data][Security]