Skip to slide
Chapter 13 · Code Review and Security Agents
93 / 142

CHAPTER 13 · Code Review and Security Agents · 4 / 9

The agentic supply chain

Snyk raises one more forward-looking risk that Chapter 16 expands: the components agents depend on (MCP servers, skills, automation templates, plugins) form a new agentic supply chain, and it is largely unsecured. In January 2026 Snyk found hundreds of malicious skills on a public skills hub. The automation templates Cursor open-sourced run with access to your codebase, CI, Slack, and GitHub. These privileged components deserve the same scrutiny as any npm dependency. Building a review agent is good; remembering that the review agent itself is a dependency is better.

← → arrow keys work too