dependency-auditing
CommunitySecure your code: audit dependencies.
AuthorRepairYourTech
Version1.0.0
Installs0
System Documentation
What problem does it solve?
This Skill helps you identify and mitigate security risks within your project's dependencies, preventing vulnerabilities and supply chain attacks.
Core Features & Use Cases
- Vulnerability Scanning: Utilizes tools like
npm audit, Snyk, and Socket.dev to detect known CVEs in your packages. - Automated Updates: Integrates with Dependabot for timely security and version updates.
- Supply Chain Security: Provides guidance on preventing dependency confusion, typosquatting, and ensuring lockfile integrity.
- SBOM Generation: Helps create Software Bills of Materials for transparency.
- License Compliance: Checks for compatible software licenses.
- Use Case: Automatically scan your project's dependencies for high-severity vulnerabilities before merging a pull request, failing the build if critical issues are found.
Quick Start
Run 'npm audit --audit-level=high' to check for high-severity vulnerabilities.
Dependency Matrix
Required Modules
None requiredComponents
scriptsreferences
💻 Claude Code Installation
Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.
Please help me install this Skill: Name: dependency-auditing Download link: https://github.com/RepairYourTech/cfsa-antigravity/archive/main.zip#dependency-auditing Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
Agent Skills Search Helper
Install a tiny helper to your Agent, search and equip skill from 223,000+ vetted skills library on demand.