Open-source security scanner for agent skills to detect prompt injection, data exfiltration, and malicious code patterns with SARIF output.