Trust & transparency

Know what you are adopting.

AAS is an independent, community-curated project. Inspect the source and decide whether each skill fits your environment.

Source and review

The GitHub repository is the canonical source. Skill details expose recorded source, requirements, and declared risk where available. Metadata and schema validation are useful checks; they do not certify security, compliance, or fitness for your project. Review the instructions and bundled files before use.

Source repository Contribution standards

Licenses and attribution

Original code and tooling use MIT. Original documentation and other non-code written content use CC BY 4.0 unless a more specific upstream notice applies. Imported skills may carry additional license and attribution requirements. Check the relevant files before redistribution or commercial adoption.

Code license Content license Sources & attribution

Browser data and analytics

Saved skills and shortlists stay in this browser’s local storage. Workbench imports stay in memory. Shared links contain selected IDs and a catalog version, and anyone with the link can read them. The hosted catalog uses Vercel Web Analytics for aggregate visit statistics; AAS removes query strings and fragments from analytics URLs. The catalog also requests public aggregate skill-save counts from Supabase.

Privacy policy Vercel analytics privacy

Local tools and third parties

Skills-only plugins are local instruction bundles and do not independently collect telemetry. AAS Core’s local catalog discovery is read-only and offline-capable. Your agent client, model provider, and any services you enable handle data under their own policies. A skill mentioning a service does not grant access or include its fees.

Core reference Terms of use

Report a problem

Use GitHub issues for reproducible bugs and Discussions for support. Send sensitive vulnerability reports through private security reporting; do not include credentials or private project information in public posts.

Report a bug Private security report Security policy