Search
Dependency management
Skills
Sort:BestMost starsTrending todayTrending this weekTrending this monthNewestRecently updatedName
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 49 | Automatically fetch and fix Dependabot security alerts by querying GitHub REST API for open alerts, identifying vulnerable packages, researching secure versions, and updating package.json files… | livesession/ | 114 | — | ~2k | Automated safety check: Pass | MIT | 2 days ago |
| 50 | Inspect, review or triage GitHub Code Scanning alerts, including CodeQL findings; apply verified dismissals when authorized. | netdata/ | 81k | — | ~1.8k | Automated safety check: Notes | GPL-3.0 | today |
| 51 | GitHub Actions CI/CD pipeline configuration for Golang projects — workflow files for test, lint, SAST, coverage and vulnerability-scan jobs, Dependabot and Renovate config files, GoReleaser release… | samber/ | 3.4k | — | ~3.7k | Automated safety check: Pass | MIT | 10 days ago |
| 52 | Sweep and update every dependency surface in the kubelb repo (go.mod, Makefile tool versions, prow images, GitHub Actions, hack/ci pins, addon Helm charts, pinned container images) and split the… | kubermatic/ | 148 | — | ~1.3k | Automated safety check: Pass | Apache-2.0 | 6 days ago |
| 53 | Comprehensively diagnose and fix a failing Dependabot PR. An agent skill from axsaucedo/kaos. | axsaucedo/ | 280 | — | ~4.2k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 54 | Triage a host that was blocked by the Dependabot proxy egress allowlist, add it to internal/handlers/egressallowlistdefaults.yaml with the correct matching form and regression tests, and open a pull… | dependabot/ | 137 | — | ~3.6k | Automated safety check: Pass | MIT | 3 days ago |
| 55 | Applies safer package manager defaults and dependency vetting to JavaScript and TypeScript projects to reduce supply-chain attack risk. | bodadotsh/ | 858 | — | ~1k | Automated safety check: Warn | MIT | 10 days ago |
| 56 | Babysit a Dependabot dependency-bump PR all the way to merge: verify the author is the genuine Dependabot bot, diagnose and resolve any CI failure (excluding or fixing a breaking bump when needed)… | dyoshikawa/ | 1.5k | — | ~1.3k | Automated safety check: Pass | MIT | today |
| 57 | Add BestieTemplate features (AGENTS.md, changelog, dependabot, pre-commit, lint workflow, testitem runner) to a Julia package with the bestie CLI — no Julia needed. | JuliaBesties/ | 128 | — | ~2.5k | Automated safety check: Pass | MPL-2.0 | 23 days ago |
| 58 | 58.Audit Thread A skill your agent uses when running a compatibility/parity AUDIT — enumerating where nub diverges from a reference it claims parity with (pnpm CLI grammar, a lockfile format, a Node behavior, a… | nubjs/ | 4.4k | — | ~1.8k | Automated safety check: Pass | MIT | yesterday |
| 59 | Triage the GitHub privately-reported vulnerability backlog for Activepieces — pull repository security advisories from the Security tab, scope-check against SECURITY.md, deeply validate each… | activepieces/ | 25k | — | ~3.9k | Automated safety check: Pass | Unknown | today |
| 60 | Plans a WxJava version upgrade, checking the BOM, module dependencies, JDK version and configuration, with phased steps and clear rollback conditions. | binarywang/ | 33k | — | ~129 | Automated safety check: Pass | Apache-2.0 | yesterday |
| 61 | Looks up Kotlin Multiplatform libraries, their latest stable versions, Gradle coordinates and verified target support through klibs.io instead of guessing. | JetBrains/ | 108 | — | ~1.1k | Automated safety check: Pass | Apache-2.0 | 3 days ago |
| 62 | Package and publish Python libraries and CLI tools: project layout, pyproject.toml, build backends, wheels and source distributions, versioning and PyPI releases. | wshobson/ | 40k | 12 repos | ~911 | Automated safety check: Pass | MIT | 6 days ago |
| 63 | CI/CD with GitHub Actions for Golang — testing, linting, SAST, security scanning, coverage, Dependabot, Renovate, GoReleaser, release pipelines. | context-labs/ | 1.1k | — | ~3.5k | Automated safety check: Pass | MIT | 6 days ago |
| 64 | Bumps the pinned Quarto version across the RStudio repository, mirrors the release to the rstudio-buildtools S3 bucket, verifies it and opens a PR, on macOS and Linux. | rstudio/ | 5.1k | — | ~2.8k | Automated safety check: Pass | Unknown | today |
| 65 | Bumps the databricks-sdk-go dependency in the Databricks CLI together with its pinned OpenAPI spec SHA, then regenerates the files that depend on them. | databricks/ | 404 | — | ~2k | Automated safety check: Notes | Unknown | yesterday |
| 66 | Fix broken dependency update PRs and aggregate the ones that work into one PR. | microsoft/ | 143 | 1 repo | ~588 | Automated safety check: Pass | Unknown | 3 days ago |
| 67 | Verifies that a pom.xml change did not silently alter Maven build behavior by diffing the effective POMs before and after. | christian-schlichtherle/ | 399 | — | ~883 | Automated safety check: Pass | Apache-2.0 | 2 mo ago |
| 68 | 68.Deps Bump Safely update Txtify dependencies or resolve Dependabot alerts. | lkmeta/ | 135 | — | ~585 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 69 | Looks up a third-party library's current documentation through the context7 MCP server instead of relying on the agent's possibly outdated training data. | duckbugio/ | 502 | — | ~408 | Automated safety check: Pass | MIT | 3 days ago |
| 70 | Review, apply, verify, or merge gocron dependency updates from Dependabot or manual requests. | gocronx-team/ | 801 | — | ~891 | Automated safety check: Pass | MIT | yesterday |
| 71 | Operate the skills-manager CLI — manage a local skill hub (install, import, distribute to agents/projects, update) and backfill provenance for source-less skills (adopt lockfile evidence, search the… | shenysun/ | 197 | — | ~7k | Automated safety check: Pass | MIT | 23 days ago |
| 72 | Fix every open Dependabot PR end-to-end on autopilot. An agent skill from axsaucedo/kaos. | axsaucedo/ | 280 | — | ~4.5k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 73 | Guides writing, running and configuring Deno 2.9+ projects: installing npm and JSR dependencies, permissions, config file precedence and the built-in fmt, lint, test and compile toolchain. | denoland/ | 100 | — | ~2.7k | Automated safety check: Pass | MIT | 2 mo ago |
| 74 | 74.AI Server Conventions for the opentrons-ai-server FastAPI service — project structure, uv dependency management, settings, testing, Docker, and deployment. | Opentrons/ | 523 | — | ~2.5k | Automated safety check: Notes | Apache-2.0 | yesterday |
| 75 | 75.Update Skia Update the Skia graphics library to a new Chrome milestone in SkiaSharp's mono/skia fork. | mono/ | 5.6k | — | ~2.4k | Automated safety check: Pass | MIT | yesterday |
| 76 | Sets one monorepo's rules for toolchain pins, pnpm package operations, the shared dependency catalog and moon tasks, so the agent adds versions and scripts the right way. | pierrecomputer/ | 6.3k | — | ~1.1k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 77 | Read every open Dependabot PR for an application-code dependency (Python pip/uv and JS npm/yarn/pnpm) and carry each version bump over to the local dependency files (requirements.txt… | ossf/ | 165 | — | ~1.7k | Automated safety check: Notes | MIT | yesterday |
| 78 | 78.Bazel Hermetic Bazel build, test, and packaging commands for the Moosync project. | Moosync/ | 259 | — | ~722 | Automated safety check: Pass | GPL-3.0 | 9 days ago |
| 79 | Updates the default serverless environment version in Databricks CLI bundle templates together with its coupled Python and DB Connect pins. | databricks/ | 404 | — | ~1.3k | Automated safety check: Notes | Unknown | yesterday |
| 80 | 80.Dep Auditor 审计 Node.js、Python、Go、Rust、JVM、Ruby 项目的依赖漏洞、版本健康度与许可证事实;当用户要求检查 package.json、lockfile、requirements、go.mod、Cargo.toml、pom.xml、Gemfile.lock,或生成不改依赖的中文审计报告时使用 | laolaoshiren/ | 880 | — | ~895 | Automated safety check: Pass | MIT | 6 days ago |
| 81 | Bumps the dbt-artifacts-parser package semver, prepares a PyPI release, and aligns GitHub Releases with version. | yu-iskw/ | 118 | — | ~700 | Automated safety check: Pass | Apache-2.0 | 4 days ago |
| 82 | Audit repo dependencies by default and only apply library upgrades when explicitly requested. | championswimmer/ | 130 | — | ~1k | Automated safety check: Pass | No licence | 4 mo ago |
| 83 | Updates chosen or all Nix flake inputs, checks the result with nix flake check and a system rebuild, fixes warnings, then offers to commit. | Ruixi-rebirth/ | 100 | — | ~469 | Automated safety check: Pass | No licence | 20 days ago |
| 84 | Points the agent at Bun 1.4 built-in APIs before it installs an npm package, so image, browser, markdown, cron, PTY and test work uses what Bun already ships. | code-yeongyu/ | 474 | — | ~1.3k | Automated safety check: Pass | MIT | today |
| 85 | Checks deps update in widely consumed repos will cause problems or not, and ranks dependency updates by downstream impact for prioritisation. | cultureamp/ | 176 | — | ~1.3k | Automated safety check: Pass | MIT | 5 days ago |
| 86 | A skill your agent uses for Dependabot PRs, dependency bumps, Gradle or Maven dependency updates, GitHub Actions updates, dependency changelog/licence/release-note review, JVM/classfile checks, and… | kernitus/ | 225 | — | ~882 | Automated safety check: Pass | MPL-2.0 | 7 days ago |
| 87 | A skill your agent uses when working on CI workflows, GitHub Actions, release process, changelog generation (git-cliff), or dependabot configuration. | kattouf/ | 116 | — | ~731 | Automated safety check: Pass | MIT | 6 mo ago |
| 88 | 88.Add Resolver Add a format-specific resolver to GitWand core. An agent skill from devlint/GitWand. | devlint/ | 180 | — | ~1.6k | Automated safety check: Pass | MIT | yesterday |
| 89 | 89.Self Healing Active runtime recovery for coding agents: when something breaks mid-task, diagnose the root cause, write a fix, VERIFY by re-running the broken thing, then file a HEAL- entry to .learnings/HEALS.md… | pskoett/ | 315 | — | ~5.3k | Automated safety check: Notes | No licence | 6 days ago |
| 90 | Audits outdated npm and Bun packages for supply chain integrity before bumping them, deferring risky ones and logging every decision. | backnotprop/ | 9.3k | — | ~1.8k | Automated safety check: Pass | Apache-2.0 | today |
| 91 | Apply the changes from all open Renovate bot pull requests of a GitHub repository into the local working tree. | sivaprasadreddy/ | 188 | — | ~3k | Automated safety check: Pass | MIT | 6 days ago |
| 92 | Dependency management for Golang projects — go.mod and go.sum, go get install and upgrade flows, Minimal Version Selection, conflict resolution with replace/exclude/retract, govulncheck scanning of… | samber/ | 3.4k | — | ~2.6k | Automated safety check: Pass | MIT | 10 days ago |
| 93 | Gathers security findings from Dependabot, GCP container scanning, Docker Scout and Linear security issues, then triages and remediates them across Warp's repos and images. | warpdotdev/ | 65k | 1 repo | ~2.1k | Automated safety check: Pass | AGPL-3.0 | today |
| 94 | Secure dependency upgrades with supply chain protection, cooldowns, and staged rollout. | secondsky/ | 462 | — | ~4.8k | Automated safety check: Warn | GPL-3.0 | 6 days ago |
| 95 | Scans package manifests and lockfiles for outdated packages and known CVEs, then classifies each possible update as patch, minor, major or escalate-human for a dependency sweeper loop. | cobusgreyling/ | 11k | — | ~626 | Automated safety check: Pass | MIT | today |
| 96 | A skill your agent uses when bumping any dependency, upgrading the HA test harness (pytest-homeassistant-custom-component) or HA floor, or handling Dependabot PRs/security alerts — per-package pin… | cognitivegears/ | 112 | — | ~1.1k | Automated safety check: Pass | MIT | 5 days ago |