DEV Machine Guard now enables inventorying of AI agent skills across developer machines, showcasing skills for various AI coding tools such as Claude Code and GitHub Copilot. Developers can track installed skills, flag potentially harmful content, and manage skills with greater visibility. The article discusses the rapid spread of agent skills, the risks associated with unmanaged content, and highlights recent attacks involving malicious skills.
Key features include fleet-wide inventory visibility, executable content flags, provenance tracking, and version drift detection. Security teams can utilize this inventory for effective incident response and governance, ensuring safer software development practices.