Security researchers have shown that malicious add-on skills for AI coding agents can be packed to look harmless at install time, exposing a trust gap in today’s plugin-style defenses.
A growing body of research shows that reusable AI agent skills can be weaponized to steal credentials, pull source code, and plant backdoors while slipping past weaker static checks.