Search
GitHub · Dependency management
Skills
Sort:BestMost starsTrending todayTrending this weekTrending this monthNewestRecently updatedName
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 1 | Bumps the pinned v8 and rusty_v8 versions in Codex, validates the release-candidate path with the v8-canary check, and traces failures to upstream build changes. | openinterpreter/ | 69k | 2 repos | ~845 | Automated safety check: Pass | Apache-2.0 | 3 days ago |
| 2 | Triages and lands a batch of open Dependabot PRs in the Onyx repo, where main is gated exclusively by GitHub's merge queue: approves and enqueues green PRs, closes superseded duplicates, fixes… | onyx-dot-app/ | 32k | 1 repo | ~2.2k | Automated safety check: Pass | MIT | today |
| 3 | Audits and updates os-packages.json files listing the Linux packages each .NET release needs per distro, then regenerates the Markdown from the JSON. | dotnet/ | 22k | — | ~2.3k | Automated safety check: Pass | MIT | yesterday |
| 4 | Updates the obs-multi-rtmp plugin repo to the latest upstream plugin template and OBS Studio version, including dependency metadata, then rebuilds it with CMake. | sorayuki/ | 5.1k | — | ~609 | Automated safety check: Pass | GPL-2.0 | 7 days ago |
| 5 | Reviews Renovate pull requests that bump GitHub Actions by checking pinned SHAs against upstream tags, scanning changelogs and confirming workflows stay compatible. | backnotprop/ | 9.2k | — | ~640 | Automated safety check: Pass | Apache-2.0 | today |
| 6 | Safely plan and execute dependency maintenance for JavaScript/TypeScript (npm, pnpm) and GitHub Actions, including npm lockfiles, pnpm workspaces, catalogs, overrides, SHA-pinned action versions… | Consensys-Incorporated/ | 177 | 1 repo | ~3.7k | Automated safety check: Warn | MIT | 8 days ago |
| 7 | Append GitHub Dependabot or Snyk/code-scanning alerts to an existing vulnerability CSV after verifying their API metadata. | langfuse/ | 36k | — | ~1.5k | Automated safety check: Pass | Unknown | today |
| 8 | Updates the Databricks CLI's cli-compat.json with new AppKit and Agent Skills versions and opens a pull request for the change. | databricks/ | 404 | — | ~1.3k | Automated safety check: Notes | Unknown | today |
| 9 | Automatically fetch and fix Dependabot security alerts by querying GitHub REST API for open alerts, identifying vulnerable packages, researching secure versions, and updating package.json files… | livesession/ | 114 | — | ~2k | Automated safety check: Pass | MIT | yesterday |
| 10 | Inspect, review or triage GitHub Code Scanning alerts, including CodeQL findings; apply verified dismissals when authorized. | netdata/ | 81k | — | ~1.8k | Automated safety check: Notes | GPL-3.0 | today |
| 11 | Triage the GitHub privately-reported vulnerability backlog for Activepieces — pull repository security advisories from the Security tab, scope-check against SECURITY.md, deeply validate each… | activepieces/ | 25k | — | ~3.9k | Automated safety check: Pass | Unknown | today |
| 12 | Bumps the dbt-artifacts-parser package semver, prepares a PyPI release, and aligns GitHub Releases with version. | yu-iskw/ | 118 | — | ~700 | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 13 | Apply the changes from all open Renovate bot pull requests of a GitHub repository into the local working tree. | sivaprasadreddy/ | 188 | — | ~3k | Automated safety check: Pass | MIT | 4 days ago |
| 14 | Gathers security findings from Dependabot, GCP container scanning, Docker Scout and Linear security issues, then triages and remediates them across Warp's repos and images. | warpdotdev/ | 65k | 1 repo | ~2.1k | Automated safety check: Pass | AGPL-3.0 | today |
| 15 | A skill your agent uses when bumping any dependency, upgrading the HA test harness (pytest-homeassistant-custom-component) or HA floor, or handling Dependabot PRs/security alerts — per-package pin… | cognitivegears/ | 112 | — | ~1.1k | Automated safety check: Pass | MIT | 4 days ago |
| 16 | 16.Cve Doctor Triage a CVE / Dependabot alert in a JS/TS project and recommend the least-invasive fix. | getlago/ | 163 | — | ~2.9k | Automated safety check: Pass | MIT | today |
| 17 | Fix a PR that is failing due to security or vulnerability issues — npm/pnpm/yarn/bun audit failures, CVE alerts, Dependabot merge conflicts, Snyk failures, or GitHub security advisory blocks. | unional/ | 133 | — | ~1.4k | Automated safety check: Warn | MIT | 2 days ago |
| 18 | Bumps gh-aw's pinned gh-aw-firewall version, rebuilds generated artifacts, and flags upstream spec or schema changes that need follow-up work. | github/ | 5.4k | — | ~899 | Automated safety check: Pass | MIT | today |
| 19 | A checklist for upgrading the pinned ONNX version and opset in ONNX Runtime, covering the files to change, archive hashes, patch rebasing and release-candidate handling. | microsoft/ | 22k | — | ~12k | Automated safety check: Pass | MIT | today |
| 20 | Keep dependencies up-to-date. An agent skill from github/rust-gems. | github/ | 134 | — | ~2.7k | Automated safety check: Pass | MIT | 2 days ago |
| 21 | Create batched Dependabot-style pull requests for GitHub security findings in axelixlabs/axelix, grouped by dependency surface such as master/front-end, master/build.gradle.kts, or starter Gradle… | axelixlabs/ | 148 | — | ~4.2k | Automated safety check: Pass | LGPL-3.0 | yesterday |
| 22 | Keeps Ansible install tasks in line with upstream docs by fixing version, install-method and link drift one tool at a time, with a commit for each. | vinta/ | 138 | — | ~1.4k | Automated safety check: Pass | MIT | yesterday |
| 23 | Fix open Dependabot and CodeQL/code-scanning alerts directly on the current branch. | cloudposse/ | 1.4k | — | ~1.3k | Automated safety check: Pass | Apache-2.0 | today |
| 24 | Sweep the open dependency-bot pull requests once - rebase the stale ones, re-trigger infrastructure failures, and merge the green patch and minor updates. | partcad/ | 503 | — | ~1.9k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 25 | The maintenance automation around Circuit Breaker — which bots and scheduled workflows exist (Discord notifications, ledger watch, branch cleanup, Dependabot lockfile sync, the required-checks… | BlkLeg/ | 201 | — | ~2.4k | Automated safety check: Pass | MIT | 4 days ago |
| 26 | Supply-chain security controls for the @cipherstash/stack monorepo. | cipherstash/ | 157 | — | ~5.2k | Automated safety check: Warn | MIT | today |
| 27 | Combine several open Dependabot pull requests into a single branch and PR: enumerate the open Dependabot PRs, cherry-pick them onto fresh main, rewrite commit messages to satisfy… | sillsdev/ | 110 | — | ~3.5k | Automated safety check: Pass | Unknown | yesterday |
| 28 | Coordinates work across several GitHub repositories: swarm-driven cross-repo operations, package version and documentation sync, and repository structure optimization. | ruvnet/ | 819 | 5 repos | ~5.6k | Automated safety check: Pass | No licence | 23 days ago |
| 29 | GitHub repository automation (CI/CD, issue templates, Dependabot, CodeQL). | secondsky/ | 227 | — | ~4k | Automated safety check: Notes | MIT | 11 days ago |
| 30 | Comprehensive guide for configuring and managing GitHub Dependabot. | github/ | 40k | 1 repo | ~3.4k | Automated safety check: Pass | MIT | today |
| 31 | Configures GitHub Advanced Security (code scanning with CodeQL, secret scanning, dependency review, and Dependabot alerts) to perform automated static analysis and vulnerability detection across… | mukul975/ | 34k | — | ~2.3k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 32 | This skill covers implementing Software Composition Analysis (SCA) using Snyk to detect vulnerable open-source dependencies in CI/CD pipelines. | mukul975/ | 34k | — | ~2.2k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 33 | Configures Depot-managed GitHub Actions runners as a drop-in replacement for GitHub-hosted runners. | PostHog/ | 40k | — | ~2.8k | Automated safety check: Pass | Unknown | today |
| 34 | Triage GitHub Dependabot security alerts into one-point GUS work items that bump the outermost consumer. | forcedotcom/ | 1k | — | ~1.5k | Automated safety check: Pass | BSD-3-Clause | today |
| 35 | Resolve Dependabot security alerts on owid/etl by upgrading vulnerable dependencies. | owid/ | 159 | — | ~2.9k | Automated safety check: Pass | MIT | today |
| 36 | 36.Repo Prep Interactively prepare a code repository for publication — LICENSE, NOTICE, AUTHORSHIP, README sections, package metadata, .gitignore, community docs (CONTRIBUTING/CODEOFCONDUCT/SECURITY/CHANGELOG)… | glebis/ | 390 | — | ~1.6k | Automated safety check: Pass | MIT | yesterday |
| 37 | Aggiunge alle repository GitHub dei siti workflow di sicurezza automatici - scansione dipendenze vulnerabili, ricerca di segreti/chiavi nel codice, analisi statica CodeQL e Dependabot. | ccplugins/ | 970 | — | ~486 | Automated safety check: Notes | Apache-2.0 | 1 mo ago |
| 38 | 38.CI Triage This skill should be used when a brepjs GitHub Actions job is red or behaving oddly on github.com (a remote CI run, not a local pre-commit/pre-push hook) — "CI failed", "ci-pass is failing", "npm ci… | andymai/ | 115 | — | ~3.7k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 39 | Automated vulnerability scanner for agent platforms. An agent skill from LeoYeAI/openclaw-master-skills. | LeoYeAI/ | 2.2k | — | ~4.1k | Automated safety check: Pass | MIT | 2 mo ago |
| 40 | Triage Dependabot, code scanning and secret scanning alerts. | Community-Access/ | 423 | — | ~943 | Automated safety check: Pass | MIT | 16 days ago |
| 41 | This skill should be used when the user asks to "triage security findings", "fix an Aikido finding", "review Aikido issues", "dismiss a false positive", "check SAST/IaC alerts", or needs to work… | bitwarden/ | 154 | — | ~2.2k | Automated safety check: Pass | Unknown | yesterday |