Can you trust this AI asset?
Search security intelligence for AI skills, MCP servers, plugins, and a growing range of AI assets. If Manifest doesn't know it, scan it on demand.
Search Manifest
Not seeing the asset you're looking for?
Scan an asset
A file, a folder, or a .zip - whatever holds the asset.
Recently flagged
Latest high-risk findings across the AI supply chain.
guardrail-testing
Prove an agent guardrail refuses — fail-closed exit codes, hostile fixtures, mutation tests without stale-.pyc false greens. Use when adding a gate or filter. Runs your tests, writes temp files, mutates code only in a mktemp copy, never in place. Trigger on "test my guardrail", "does this gate fail closed", "mutation testing", "the test passes but the guard is broken".
project-commands
Use when installing, testing, linting, building, running, deploying, rolling back, or validating this repository so the agent does not rediscover commands repeatedly.
svg-stroke-reveal
Vẽ dần nét SVG (stroke-draw) theo cuộn trang hoặc khi vào viewport — đo `path.getTotalLength()`, set `stroke-dasharray`/`stroke-dashoffset`, animate dashoffset từ length về 0. Gọi khi user nói "vẽ svg khi cuộn", "svg stroke draw", "logo vẽ dần", "path animation reveal", "stroke-dashoffset", hoặc /svg-stroke-reveal. KHÁC `skills/scroll-effects` (7 hiệu ứng cuộn chung — reveal/stagger/highlight/nav/top/toc/parallax, KHÔNG có stroke-draw) — skill này chuyên biệt cho SVG `<path>` có NÉT VẼ (logo, chữ ký, biểu đồ đường, hành trình).
scenario-zbrush-expert
Use when an agent drives Maxon ZBrush 2026 for any task (sculpt in ZBrush, DynaMesh, ZRemesher, UVs, export, polypaint, posing, 3D print, clean up an AI mesh in ZBrush), when writing ZBrush Python (zbrush.commands) or ZScript, when the ZBrush bridge is not answering, a palette path or set() does nothing, a scripted stroke does not sculpt or a dialog blocks a script, or when a ZBrush result has to be judged the way a professional artist would.
Latest research
New findings from the Manifold research team.

GitSpawn: A Single Flaw Lets Untrusted Repos Run Code in Claude Code, Codex, Cursor, and Grok
Popular CLI AI coding agents run git commands on startup. A repo you were sent can hijack them to run code on your machine, no clicks required.

OpenAI & Hugging Face: Why The Chain-of-Thought Police Won't Save You
OpenAI saw agents coordinating seven weeks before the Hugging Face breach. Each alert was read alone. One more monitor would not have changed that.

What to think about curl | bash now that AI agents run it.
AI agents now run curl | bash with your credentials. We scanned 4,003 extensions and 2.7M agent events: the URL tells you nothing. Behavior does.
Manifest registry
Explore the full database
Search, filter, and compare every indexed skill, plugin, and MCP server.