Favicon of emit-sarif

emit-sarif Skill

AI Agent SkillC#Open source

Serialize AI-detected security findings as SARIF v2.1.0 conforming to the AI-generated-findings profile, using the Sarif.Multitool emit verbs. Published by microsoft in sarif-sdk.

Decision snapshot

Is this a fit?

Best for

Security review, Documentation, Data analysis, Includes SKILL.md

Works with

Compatibility not yet detected.

Access

Permission behavior not yet detected.

Setup

Copy skill directory

Project health

2 months ago · NOASSERTION license

Considerations

No specific cautions were detected. Review the source and requested permissions before installing.

What is emit-sarif Skill?

Serialize AI-detected security findings as SARIF v2.1.0 conforming to the AI-generated-findings profile, using the Sarif.Multitool emit verbs. Published by microsoft in sarif-sdk. This profile combines repository metadata with install, compatibility, and usage signals so developers can quickly decide whether it fits their agent workflow before opening the source repository.

Trust signal
95/100
Maintenance signal
90/100
Adoption signal
58/100

Automated repository signals based on public metadata such as recency, license, installation evidence, and adoption. These are not a security audit or endorsement. See how SkillIndex evaluates profiles.

Key capabilities

  • Includes SKILL.md support
  • Reusable instructions support
  • Security review
  • Documentation
  • Data analysis
  • Security review use cases
  • Documentation use cases

Declared skill metadata

  • Declared author: sarif-sdk-maintainers
  • Source file: skills/emit-sarif/SKILL.md

These fields retain source and confidence evidence from the indexed SKILL.md.

Compatibility and setup

Copy skill directory
  • Install or run with Copy skill directory

When to use emit-sarif Skill

  • Use it for security review.
  • Use it for documentation.
  • Use it for data analysis.

Built with

C#Copy skill directory

Editorial notes

Source

  • Creator: microsoft
  • Repository: microsoft/sarif-sdk
  • Skill file: skills/emit-sarif/SKILL.md

What it does

Serialize AI-detected security findings as SARIF v2.1.0 conforming to the AI-generated-findings profile, using the Sarif.Multitool emit verbs.

Skill instructions

Emit SARIF Findings Context You have completed a security analysis of a codebase and hold one or more findings in working memory. This skill serializes those findings as a SARIF v2.1.0 log that downstream tooling — result-management systems, triage agents, and autonomous remediation agents — can consume without tool-specific knowledge. The output contract is the AI-generated-findings profile defined in docs/ai/generating-sarif.md. That document is the normative reference; this skill is the operational wrapper that uses the Sarif.Multitool emit verbs to produce a conformant log. When to apply this skill Apply this skill when an agent is the originating detector (not post-processing another tool's SARIF) and needs to persist findings. Signals: - The agent has enumerated vulnerabilities with file/line locations and CWE classifications. - A downstream step expects a .sarif artifact. - The orchestrator requests ai/origin: "generated" output (or annotated / synthesized). Prerequisites - Sari

Verified compatibility and discovery

Frequently asked questions

What is emit-sarif?

emit-sarif is a open-source AI agent skill with Copy skill directory. Serialize AI-detected security findings as SARIF v2.1.0 conforming to the AI-generated-findings profile, using the Sarif.Multitool emit verbs.

Who is emit-sarif best for?

emit-sarif is best for reusing agent instructions, scripts, and references, security review workflows, documentation workflows, data analysis workflows.

How do I install emit-sarif?

Install or run emit-sarif using Copy skill directory. Check emit-sarif for the latest setup command.

Is emit-sarif actively maintained?

emit-sarif may need a closer maintenance check before production use.

Share:

Stars
224
Forks
105
Last commit
2 months ago
Last verified
Aug 30, 2026
Metadata fetched
Aug 30, 2026
Repository age
11 years
License
NOASSERTION

Project health auto-fetched from the source repository.

Maintain this resource?

Review this source-backed profile, send a correction with evidence, or link to it from your documentation. Claims verify your relationship to the project; profile facts still require source evidence and editorial review.

Alternatives to emit-sarif