Search

Security · Dependency management

62 skills found.
Search results
#SkillRepositoryStarsUsed inTokensAuto-checkLicenceUpdated
1

Update native dependencies (libpng, libexpat, zlib, libwebp, harfbuzz, freetype, libjpeg-turbo, etc.) in SkiaSharp's Skia fork.

mono/SkiaSharp5.6k—~4.1kAutomated safety check: PassMITyesterday
2

Triage Dependabot dependency vulnerability alerts for the Activepieces repo — pull open alerts, dedupe to distinct (package, advisory), confirm the vulnerable package + API is actually used, and…

activepieces/activepieces25k—~2.9kAutomated safety check: PassUnknowntoday
3

Audit or harden gocron security across Go, pnpm workspaces, containers, authentication, authorization, secrets, command execution, SSRF, and dependency vulnerabilities.

gocronx-team/gocron801—~690Automated safety check: PassMITyesterday
4

Check if recent cybersecurity alerts from 10 international CERTs affect your current project.

karimhabush/cyberowl263—~2.5kAutomated safety check: PassMITtoday
5

Inspect, review or triage GitHub Code Scanning alerts, including CodeQL findings; apply verified dismissals when authorized.

netdata/netdata81k—~1.8kAutomated safety check: NotesGPL-3.0today
6

GitHub Actions CI/CD pipeline configuration for Golang projects — workflow files for test, lint, SAST, coverage and vulnerability-scan jobs, Dependabot and Renovate config files, GoReleaser release…

samber/cc-skills-golang3.4k—~3.7kAutomated safety check: PassMIT9 days ago
7

Applies safer package manager defaults and dependency vetting to JavaScript and TypeScript projects to reduce supply-chain attack risk.

bodadotsh/npm-security-best-practices858—~1kAutomated safety check: WarnMIT10 days ago
8

CI/CD with GitHub Actions for Golang — testing, linting, SAST, security scanning, coverage, Dependabot, Renovate, GoReleaser, release pipelines.

context-labs/whip1.1k—~3.5kAutomated safety check: PassMIT6 days ago
9

Audits outdated npm and Bun packages for supply chain integrity before bumping them, deferring risky ones and logging every decision.

backnotprop/plannotator9.3k—~1.8kAutomated safety check: PassApache-2.0today
10

Gathers security findings from Dependabot, GCP container scanning, Docker Scout and Linear security issues, then triages and remediates them across Warp's repos and images.

warpdotdev/warp65k1 repo~2.1kAutomated safety check: PassAGPL-3.0today
11

Secure dependency upgrades with supply chain protection, cooldowns, and staged rollout.

secondsky/sap-skills462—~4.8kAutomated safety check: WarnGPL-3.05 days ago
12

Scans package manifests and lockfiles for outdated packages and known CVEs, then classifies each possible update as patch, minor, major or escalate-human for a dependency sweeper loop.

cobusgreyling/loop-engineering11k—~626Automated safety check: PassMITtoday
13

Workflow for updating gem dependencies and fixing CVEs in the ruby-git project: assess with bundle outdated and audit, edit the gemspec, test, then commit with conventional messages.

ruby-git/ruby-git1.8k—~806Automated safety check: PassMIT9 days ago
14

Triage a CVE / Dependabot alert in a JS/TS project and recommend the least-invasive fix.

getlago/lago-front163—~2.9kAutomated safety check: PassMITtoday
15

Audit SkiaSharp's native dependencies for security vulnerabilities and CVEs, including Component Governance (CG) alerts from the combined skiasharp-package Azure DevOps pipeline.

mono/SkiaSharp5.6k—~5.7kAutomated safety check: PassMITyesterday
16

Scans a repository, its lockfiles and node_modules for known malicious npm package versions and install-time indicators, using a read-only Python scanner.

majiayu000/spellbook287—~1.5kAutomated safety check: PassMIT2 days ago
17

Check dependencies for known vulnerabilities using npm audit, pip-audit, etc.

alirezarezvani/claude-code-tresor777—~1.2kAutomated safety check: NotesMIT3 mo ago
18

Automated triage and fixing of Dependabot security vulnerabilities (IN-1189).

linuxfoundation/insights282—~3.8kAutomated safety check: NotesMIT9 days ago
19

Audits a project's dependencies for supply-chain risk: version-matched advisories for direct dependencies and the full lockfile tree, abandoned or archived upstreams, npm publisher concentration…

trailofbits/skills7.5k—~1.7kAutomated safety check: NotesCC-BY-SA-4.0yesterday
20

Read the vendor's breaking changes, deprecations, migration notes and CVEs for every version between the one pinned now and the one being moved to, through the whatsnew MCP server's upgradenotes tool.

getknit/knit133—~1.2kAutomated safety check: PassGPL-3.0yesterday
21

Create batched Dependabot-style pull requests for GitHub security findings in axelixlabs/axelix, grouped by dependency surface such as master/front-end, master/build.gradle.kts, or starter Gradle…

axelixlabs/axelix148—~4.2kAutomated safety check: PassLGPL-3.0today
22

Fix open Dependabot and CodeQL/code-scanning alerts directly on the current branch.

cloudposse/atmos1.4k—~1.3kAutomated safety check: PassApache-2.0today
23

Check every dependency in a package.json against live CVE databases and security advisories in real time — specifically targeting vulnerabilities disclosed in the last 48 hours, the window that…

tinyfish-io/tinyfish-cookbook2.2k—~2.4kAutomated safety check: PassMIT2 days ago
24

Ghost Security - Software Composition Analysis (SCA) scanner.

ghostsecurity/skills409—~1.3kAutomated safety check: NotesApache-2.012 days ago
25

Dependabot and security analysis skill for HASTE. An agent skill from microsoft/haste.

microsoft/haste107—~1kAutomated safety check: PassMITyesterday
26

Supply-chain security controls for the @cipherstash/stack monorepo.

cipherstash/stack157—~5.2kAutomated safety check: WarnMITyesterday
27

Sequences safe dependency upgrades: read the changelog, verify the version exists upstream, pin it, and keep major bumps in separate commits behind a full gate run.

dralgorhythm/claude-agentic-framework125—~1.5kAutomated safety check: PassNo licence2 mo ago
28

GitHub repository automation (CI/CD, issue templates, Dependabot, CodeQL).

secondsky/claude-skills227—~4kAutomated safety check: NotesMIT13 days ago
29

Respond to blocked package installs and manage the Interlinked supply-chain allowlist.

QuentinCody/interlinked-cli178—~2.8kAutomated safety check: PassMITyesterday
30

Scans deps for known CVEs via native audit (npm, pip, composer, cargo, go, bundler, dart).

softspark/ai-toolkit180—~1.3kAutomated safety check: NotesApache-2.0yesterday
31

Scan package manifests and lockfiles for outdated and vulnerable dependencies.

cobusgreyling/loop-engineering11k—~531Automated safety check: PassMITtoday
32

Security best practices and vulnerability prevention for Golang — injection (SQL, command, XSS), cryptography, path traversal, SSRF and HTTP security headers, cookies, secrets management, memory…

unxed/f42432 repos~3.6kAutomated safety check: PassMITyesterday
33

Configures GitHub Advanced Security (code scanning with CodeQL, secret scanning, dependency review, and Dependabot alerts) to perform automated static analysis and vulnerability detection across…

mukul975/Anthropic-Cybersecurity-Skills34k—~2.3kAutomated safety check: PassApache-2.01 mo ago
34

Golang dependency management — go.mod, installing/upgrading packages, Minimal Version Selection, vulnerability scanning, binary size, Dependabot/Renovate, conflict resolution, go.work.

context-labs/whip1.1k—~2.4kAutomated safety check: PassMIT6 days ago
35

Audit project dependencies, frameworks, languages, and dev tools for known vulnerabilities, CVEs, and security anti-patterns.

briiirussell/cybersecurity-skills413—~3.2kAutomated safety check: WarnMIT4 mo ago
36

Audit Maven dependencies for outdated versions, security vulnerabilities, and conflicts.

decebals/claude-code-java751—~1.7kAutomated safety check: PassMIT1 mo ago
37

Scan package dependencies for known vulnerabilities using Snyk, Dependabot, and OWASP Dependency-Check.

sickn33/agentic-awesome-skills47k1 repo~2.4kAutomated safety check: PassMIT2 days ago
38

Scans your project for outdated npm, pip, Cargo, Go, or Ruby packages.

Varnan-Tech/opendirectory674—~3kAutomated safety check: NotesMIT1 mo ago
39

Flag misspelled, brandjacked, and typosquatted package names across npm, PyPI, and crates.io before installation, using edit-distance, keyboard-proximity, and known-target corpus matching with…

mukul975/Anthropic-Cybersecurity-Skills34k—~3kAutomated safety check: PassApache-2.01 mo ago
40

Audit JS/TS projects against NPM Security Guidelines covering project setup, dependency hygiene, CI/CD pipeline, Dependabot, and incident response.

c0x12c/ai-toolkit106—~1.6kAutomated safety check: WarnNo licence3 mo ago
41

Scan project dependencies for known vulnerabilities and CVEs.

ruvnet/ruflo74k—~258Automated safety check: PassMITyesterday
42

A skill your agent uses when the user says 'dependency audit', 'npm audit', 'pip audit', 'cargo audit', 'security vulnerabilities', 'outdated packages', 'supply chain', or needs to scan project…

cwinvestments/memstack423—~3.1kAutomated safety check: PassProprietary14 days ago
43

[omh] Security event on the code already shipped -- a CVE in a dependency, a secret committed to the repo, a license question, an advisory: triage reachability and severity, contain in order, and…

rlaope/oh-my-hermes3.2k—~2.4kAutomated safety check: PassMITyesterday
44

Dependabot-aware dependency updates with security audit, real-CI validation, and a unified PR.

joshukraine/dotfiles429—~2.2kAutomated safety check: PassMIT4 days ago
45

Triage npm packages and lockfiles for install-script malware, credential exfiltration, and worming behavior using GuardDog, manual tarball inspection, and dynamic detonation with network/filesystem…

mukul975/Anthropic-Cybersecurity-Skills34k—~2.6kAutomated safety check: WarnApache-2.01 mo ago
46

Audit a Node.js project's installed npm dependency tree for known CVEs by wrapping the npm audit JSON output and emitting findings in the canonical penetration-tester schema.

jeremylongshore/tons-of-skills-marketplace2.8k—~2.5kAutomated safety check: NotesMITyesterday
47

Resolve Dependabot security alerts on owid/etl by upgrading vulnerable dependencies.

owid/etl159—~2.8kAutomated safety check: PassMITyesterday
48

Scan project dependencies for known vulnerabilities (CVEs). An agent skill from OWASP/secure-agent-playbook.

OWASP/secure-agent-playbook188—~494Automated safety check: PassCC-BY-4.015 days ago