OpenAgentSkill Registry Manifest Skill: Shai Hulud 2.0 Detector Slug: gensecaihq-shai-hulud-2-0-detector Category: security Description: Detect npm packages compromised in the Shai-Hulud 2.0 supply chain attack (Nov 2025). Scans for 790+ malicious packages, suspicious scripts, TruffleHog activity, SHA1HULUD runners, and secrets exfiltration. GitHub Action with SARIF support. Agent fit: - Decision: 78/100 Strong shortlist - Primary fit: GitHub automation - Role: Companion skill Supply profile: - Track: Coding and developer agents - Scenario: GitHub automation - Applicable agents: Claude Code, CLI, Codex, Cursor, TypeScript - Maintenance: 12d since push - Risk: Needs review Trust: - Trust score: 78/100 Strong shortlist - Audit: 84/100 Needs review Attribution: - Status: Community indexed - Source: GitHub star discovery - Creator: gensecaihq - Claim URL: https://www.openagentskill.com/skills/gensecaihq-shai-hulud-2-0-detector#claim-this-skill Install: npx skills add gensecaihq/Shai-Hulud-2.0-Detector URLs: - Web: https://www.openagentskill.com/skills/gensecaihq-shai-hulud-2-0-detector - API: https://www.openagentskill.com/api/agent/skills/gensecaihq-shai-hulud-2-0-detector - Install API: https://www.openagentskill.com/api/skills/gensecaihq-shai-hulud-2-0-detector/install - Repository: https://github.com/gensecaihq/Shai-Hulud-2.0-Detector