Book a 30-minute demo →
Skill scan report

antigravity

View on GitHub
49 Medium This skill contains obfuscated or hidden content. Automated analysis flagged 2 additional risk patterns.

What this skill does

Automation of Antigravity desktop app via OpenCLI for message sending, conversation management, and code extraction.

github/jackwener - Command Injection Risk - 28k stars

ThreatsCommand Injection Risk Exfiltration Risk Obfuscation Risk

Threat analysis

Command Injection Risk1 finding
Exfiltration Risk1 finding
Obfuscation Risk1 finding

Skill info

Namejackwener/antigravity
Registrygithub
Versiona86d647
PURLpkg:github/jackwener/OpenCLI@a86d647?skill=antigravity
Stars28k

Assessments (3)

Command Injection Risk1 finding HIGH
HIGH

Command Injection Risk via local-llm-review

delete.js

The `delete.js` file allows deletion of Antigravity conversations with a `--yes` flag. If not properly secured, this could be exploited to delete user data without proper authorization.
Exfiltration Risk1 finding HIGH
HIGH

Exfiltration Risk via local-llm-review

serve.js

The `serve.js` file implements an HTTP server that acts as a proxy for the Anthropic Messages API, forwarding requests to a running Antigravity app via CDP. This could be used to exfiltrate data from 
Obfuscation Risk1 finding MEDIUM
MEDIUM

Obfuscation Risk via local-llm-review

serve.js

The `generateMsgId` function in `serve.js` uses a custom character set for message ID generation, which could be used to obscure or obfuscate message identifiers, potentially hiding malicious activity

Badge

Add the Anomity scan badge for antigravity to your README.

Anomity Skill Check badge

Markdown
[![Anomity Skill Check](https://anomity.ai/skills/badge.svg)](https://anomity.ai/skills/github/jackwener/antigravity/)
HTML
<a href="https://anomity.ai/skills/github/jackwener/antigravity/"><img src="https://anomity.ai/skills/badge.svg" alt="Anomity Skill Check"></a>
Image URL
https://anomity.ai/skills/badge.svg

How Anomity governs this at runtime

Scan-time vetting tells you what a skill says it will do. Anomity's Endpoint Sensor sees what agents actually do: it discovers skills alongside every other AI artifact on the endpoint, and runtime governance can allow, deny, or log the tool calls a skill triggers. Policy violations route to your SIEM, Slack, email, or Jira, backed by a queryable 90-day audit trail.

Book a 30-minute demo to see your own skill inventory.

Methodology and disputes

Every skill is assessed by the Anomity Skill Intelligence engine against its public source; findings indicate risk patterns, not confirmed exploitation. Maintainer of antigravity? Report an issue or request a rescan.

Ask AI about Anomity
ChatGPT Claude Perplexity Google AI Grok