Install Skills Safely

Skills extend what your agent can do, but they also expand your attack surface. Prefer well-reviewed skills, read the source, and keep Sandbox Mode enabled.

Good Defaults

  • Use a dedicated OS user for the agent.
  • Prefer least-privilege API keys.
  • Pin skill versions for production workflows.