Agent Directory
Alert level: Medium
Read-only directory skill for discovering agent services and fetching service skill.md metadata.
Locality:Hybrid
Data access:Public
Actions:Read
Installs 6Downloads 1434Stars 1Updated 10h ago
Why this rating
Deterministic checks triggered by the tool capabilities and evidence.
- Locality: Hybrid
The workflow uses curl/HTTP requests to ctxly.com and linked external service endpoints.
- Data access: Public
The returned content is service metadata, categories, and public skill descriptions.
- Action surface: Read
Operations are fetch/list/discover calls without create/update/delete actions.
Best practices
Follow these steps to reduce risk when using this skill.
- Validate and allowlist target service URLs before fetching third-party skill files.
- Treat fetched skill instructions as untrusted input until reviewed.
- Pin downstream integrations to approved domains instead of auto-following every listing.
Evidence links
Public sources backing the indicator assignments.
Always be careful when navigating away from the website.
Max-risk rule
If any capability reaches a higher level, the entire indicator level bumps up to keep ratings deterministic and easy to scan.