Agent Security Auditor

SkillDocs & knowledge

Lets your agent check a self-hosted agent setup for exposed dashboards, leaked secrets, weak keys, and missing backups.

Instructions available. Your AI can read the instructions. Execution depends on the setup they require.

Add ahel to your AI once: Claude, ChatGPT, Cursor, Claude Code or Codex. Then ask it to use this.

Then ask your AI: use the Agent Security Auditor skill

About this skill

Use when auditing a VPS-based Hermes agent setup for exposed dashboards, weak secret handling, broad keys, Docker risks, or missing backup/security documentation.

What this skill tells your AI

The instructions your AI receives, as published by shannhk/hermes-agent-control-room in skills/agent-security-auditor/SKILL.md and read by ahel’s review.

Audit the Agent Control Room and runtime setup for security issues.

Check:

  • exposed dashboard/API ports
  • SSH hardening notes
  • Docker containers and mounted paths
  • .env files accidentally committed
  • raw secrets in docs
  • token scope and rotation dates
  • per-agent least privilege
  • backup repo exclusions

Do not print raw secret values. Report locations and remediation steps.

Signals

GitHub stars
723
Forks
106
Last commit
May 2026
Advanced
Item type
skill
Key
agent-security-auditor
Source
github.com/shannhk/hermes-agent-control-room