Agent skill

Oss Forensics

by AlexAI-MCP in AlexAI-MCP/hermes-CCC

Open-source security forensics - analyze repositories, dependencies, and code for malicious patterns, supply chain risks, and vulnerabilities.

MITAuto-check passedSecurity

Install Oss Forensics

skills CLI
$ npx skills add AlexAI-MCP/hermes-CCC --skill oss-forensics -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install AlexAI-MCP/hermes-CCC oss-forensics --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/AlexAI-MCP/hermes-CCC.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/oss-forensics .claude/skills/oss-forensics && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
oss-forensics
GitHub stars
135
Token cost
~1.8k tokens
SKILL.md length
884 words
Files
1
Skills in repo
44
Repo updated
First seen
Licence
MIT

At a glance

Open-source security forensics - analyze repositories, dependencies, and code for malicious patterns, supply chain risks, and vulnerabilities.

  • Works in 5 steps: Audit dependencies for known… → Assess repository trust signals and… → Review code for suspicious patterns. → …
  • Tasks that involve Supply chain security
  • SKILL.md covers Purpose, High-Level Approach, Dependency Audit and Repository Trust Review, plus 16 more sections
  • Calls pip, npm and cargo

What it does

Oss Forensics is an agent skill from AlexAI-MCP/hermes-CCC. Open-source security forensics - analyze repositories, dependencies, and code for malicious patterns, supply chain risks, and vulnerabilities.

Its SKILL.md is about 1.8k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Security, covering Supply chain security. The repository describes itself as: Hermes Agent ported to Claude Code Channel — 46 native skills, no OAuth, no external process. The licence is MIT.

When your agent uses it

  • Tasks that involve Supply chain security

Example prompts

  • “/oss-forensics”

Workflow steps

5 steps, taken from the first numbered list in SKILL.md.

  1. Audit dependencies for known vulnerabilities.
  2. Assess repository trust signals and maintainer health.
  3. Review code for suspicious patterns.
  4. Generate an SBOM and map packages to CVEs.
  5. Check history, provenance, and release integrity.

What it can do on your machine

Read from SKILL.md and the folder at commit 8107e89. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • pip
    • npm
    • cargo
    • trivy
    • git

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md. Its commands use pip, npm and git, which can reach the network depending on how they are called.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Oss Forensics loads about 1.8k tokens when it runs. Until then it costs about 39 tokens; SKILL.md has 884 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~39
When it runs · the whole SKILL.md, loaded when a task matches
~1.8k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from AlexAI-MCP/hermes-CCC at commit 8107e89, republished under its MIT licence (© AlexAI-MCP). 884 words, ~1,824 tokens.

Download SKILL.mdSave it as .claude/skills/oss-forensics/SKILL.md (or your agent's skills folder).
name
oss-forensics
description
Open-source security forensics - analyze repositories, dependencies, and code for malicious patterns, supply chain risks, and vulnerabilities.
version
1.0.0
author
hermes-CCC (ported from Hermes Agent by NousResearch)
license
MIT

OSS Forensics

Purpose

  • Use this skill to investigate open-source repositories, packages, images, and dependency trees for security risk.
  • It is useful for package intake, third-party code review, incident response, and supply-chain due diligence.
  • Treat this as a forensic and risk-triage workflow, not a single tool.

High-Level Approach

  1. Audit dependencies for known vulnerabilities.
  2. Assess repository trust signals and maintainer health.
  3. Review code for suspicious patterns.
  4. Generate an SBOM and map packages to CVEs.
  5. Check history, provenance, and release integrity.

Dependency Audit

Python:

bash
pip audit

Node:

bash
npm audit

Rust:

bash
cargo audit
  • Start with ecosystem-native audit tools because they surface known advisories quickly.
  • Audit output is a first-pass signal, not a complete security assessment.

Repository Trust Review

  • Check stars, forks, contributors, and recent activity.
  • Look for consistent release cadence rather than vanity popularity alone.
  • Review the maintainer set and whether development is concentrated in one fragile account.
  • Inspect open issues and unresolved security reports.
  • Check whether CI appears healthy and whether releases are reproducible.

Maintainer Reputation Signals

  • Is the maintainer known in the ecosystem.
  • Does the project have multiple active reviewers.
  • Are releases signed or provenance-documented.
  • Has the project recently changed owners or transfer history.
  • Did a previously dormant repo suddenly publish a new release with intrusive install-time behavior.

Dependency Confusion

  • Check whether private internal package names also exist publicly.
  • If an internal package name is accidentally resolved from a public registry, it can become a dependency confusion vector.
  • Review package names in lockfiles, private registries, and CI configuration.
  • Ensure package managers are pinned to the intended registry for internal namespaces.

Typosquatting Detection

  • Compare the package name to well-known packages.
  • Look for single-character swaps, dropped vowels, pluralization changes, or unicode lookalikes.
  • Typosquatted packages often mimic metadata, README wording, or install instructions.
  • Review whether the package description feels copied but inconsistent with the code quality.

License Compliance

Python:

bash
pip-licenses

Repository-level license detection:

bash
licensee detect .
  • Security review and license review are separate concerns, but intake usually needs both.
  • Unexpected license changes can also be a signal that package ownership changed or quality control weakened.

SBOM Generation

Using Syft:

bash
syft .
syft image:myapp

CycloneDX example:

bash
cyclonedx-bom
  • Generate an SBOM to establish what is actually present.
  • SBOMs are useful for later incident response, vulnerability matching, and compliance reporting.

CVE Lookup

Container image scanning:

bash
grype image:myapp

Filesystem scanning:

bash
trivy fs ./
  • Use grype for image/package matching against vulnerability databases.
  • Use trivy fs ./ for repository and local filesystem scanning.
  • CVE output should be prioritized by exploitability, exposure, and runtime presence.

Code Review for Malicious Patterns

Look for:

  • obfuscated strings
  • suspicious eval()
  • suspicious exec()
  • large base64 blobs
  • dynamic network fetch during install
  • shell command execution in setup hooks
  • credential collection logic unrelated to the package purpose

These are not proof by themselves, but they deserve deeper inspection.

Strings and Obfuscation Heuristics

  • Long unreadable encoded literals
  • split-and-join string tricks
  • excessive use of reflection or metaprogramming in simple packages
  • hidden payload assembly at runtime
  • download-and-execute logic behind environment checks

Git History Review

Check for suspicious edits and removed secrets:

bash
git log --all -S 'password'
  • Search history for credential strings, hardcoded tokens, or suspiciously removed secrets.
  • Also inspect install scripts, CI files, release automation, and package publish workflows.
  • A secret that existed and was later removed may still indicate a risky maintainer process.
Show full SKILL.md (363 more words)Show less

Release Integrity

  • Verify package checksums when the ecosystem supports it.
  • Prefer signed releases or trusted provenance where available.
  • Compare source tarballs to repository tags when integrity matters.
  • Watch for release artifacts that do not match the visible source tree.

Supply-Chain Compromise Scenarios

  • Maintainer account takeover
  • malicious dependency injection in a minor release
  • registry compromise
  • CI secret theft leading to malicious publishing
  • abandoned package taken over by a new owner

The question is not only "is this code vulnerable" but also "could this release path be hijacked."

Package Intake Questions

  • Does the package solve a real problem we need.
  • Is the dependency count unusually high for its purpose.
  • Are there post-install scripts.
  • Is the code readable enough to review.
  • Is maintenance active and credible.

Red Flags

  • sudden popularity with no substantial code
  • no tests but privileged install behavior
  • release notes that do not match the diff
  • vendor accounts that changed recently
  • dependency tree expansion after a minor version bump

Practical Workflow

  1. Run pip audit, npm audit, or cargo audit as appropriate.
  2. Generate an SBOM with syft or cyclonedx-bom.
  3. Scan with grype or trivy.
  4. Inspect repo trust signals and maintainer history.
  5. Search code for eval(), exec(), base64 blobs, and obfuscation.
  6. Search git history for removed secrets and suspicious release changes.
  7. Verify checksums, tags, and signatures when available.

Scope Boundaries

  • A clean audit report does not mean the package is safe.
  • A suspicious code pattern does not automatically mean it is malicious.
  • Forensics here is about narrowing uncertainty and documenting risk.
  • Escalate to deeper manual review for packages with privileged access or broad deployment.

Summary

  • Audit dependencies with pip audit, npm audit, and cargo audit.
  • Review GitHub trust signals including stars, forks, contributors, recent activity, and maintainer reputation.
  • Check for dependency confusion and typosquatting against expected package names.
  • Use pip-licenses and licensee for license visibility.
  • Generate SBOMs with syft or cyclonedx-bom.
  • Match packages and images to CVEs with grype image:myapp and trivy fs ./.
  • Hunt for malicious patterns such as obfuscation, eval(), exec(), and base64 payload blobs.
  • Search git history for removed secrets with git log --all -S 'password'.
  • Verify checksums, signatures, and whether maintainer accounts may have been compromised.

© AlexAI-MCP, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in skills/oss-forensics of AlexAI-MCP/hermes-CCC.

Open the folder on GitHubat commit 8107e89

Compare with similar skills

Oss Forensics next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Oss Forensics compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Oss Forensics this skillAlexAI-MCP/hermes-CCC135—~1.8kAutomated safety check: PassMIT
Skill Scannergetsentry/skills1k4 repos~2.5kAutomated safety check: WarnApache-2.0
Serenity Aleabitoreddityan-labs/serenity-aleabitoreddit4811 repos~3.3kAutomated safety check: PassNone
Eu CraSushegaad/Claude-Skills-Governance-Risk-and-Compliance9461 repos~4kAutomated safety check: PassMIT
Kesekit Checkcdppcorp/KESE-KIT360—~1.3kAutomated safety check: PassMIT
Bom Auditcdxgen/cdxgen1.1k—~2.4kAutomated safety check: PassApache-2.0

Similar skills

  • Skill Scanner

    getsentry/skills

    Official

    Scan agent skills for security issues. An agent skill from getsentry/skills.

    1k GitHub starsUsed in 4 repos~2.5k tokens
    SecurityAuto-check: warnings
  • Serenity Aleabitoreddit

    yan-labs/serenity-aleabitoreddit

    Apply trader Serenity's (@aleabitoreddit) AI/semiconductor supply-chain analytical lens to US-stock ideas and market judgment.

    481 GitHub starsUsed in 1 repo~3.3k tokens
    SecurityAuto-check passed
  • Eu Cra

    Sushegaad/Claude-Skills-Governance-Risk-and-Compliance

    Expert EU Cyber Resilience Act (CRA) advisor for Regulation (EU) 2024/2847 — mandatory cybersecurity and vulnerability handling requirements for all products with digital elements (PDEs) sold in the…

    946 GitHub starsUsed in 1 repo~4k tokens
    SecurityAuto-check passed
  • Kesekit Check

    cdppcorp/KESE-KIT

    Run a pre-deployment security compliance checklist based on KISA guidelines.

    360 GitHub stars~1.3k tokensUpdated 6 mo ago
    SecurityAuto-check passed
  • Bom Audit

    cdxgen/cdxgen

    Runs supply-chain risk analysis on CycloneDX BOMs with cdx-audit predictive auditing and cdxgen --bom-audit embedded rules, covering npm and PyPI package compromise posture, CI permission risk…

    1.1k GitHub stars~2.4k tokensUpdated today
    SecurityAuto-check passed
  • Packslip

    jdx/packslip

    Configure signed release manifests with packslip: add the jdx/packslip action or packslip create to a release workflow, declare completions, man pages, CLI specs, skills, and SBOMs as resources, and…

    136 GitHub stars~2.9k tokensUpdated today
    SecurityAuto-check passed

More from AlexAI-MCP/hermes-CCC

All 44 skills in this repo
  • GitHub Code Review

    AlexAI-MCP/hermes-CCC

    Review GitHub pull requests with a findings-first engineering mindset.

    135 GitHub stars~1.3k tokensUpdated 6 mo ago
    Auto-check passed
  • GitHub PR Workflow

    AlexAI-MCP/hermes-CCC

    Run a disciplined GitHub pull request workflow from branch creation through merge.

    135 GitHub stars~1.4k tokensUpdated 6 mo ago
    Auto-check passed
  • Hermes Memory

    AlexAI-MCP/hermes-CCC

    Manage durable project memory for Claude Code. An agent skill from AlexAI-MCP/hermes-CCC.

    135 GitHub stars~1.7k tokensUpdated 6 mo ago
    Auto-check passed
  • Hermes Route

    AlexAI-MCP/hermes-CCC

    Route Claude Code work by complexity, risk, and tool needs. An agent skill from AlexAI-MCP/hermes-CCC.

    135 GitHub stars~1.9k tokensUpdated 6 mo ago
    Auto-check passed
  • Hermes Skill

    AlexAI-MCP/hermes-CCC

    Create, improve, inventory, and audit Claude Code skills. An agent skill from AlexAI-MCP/hermes-CCC.

    135 GitHub stars~1.7k tokensUpdated 6 mo ago
    Auto-check passed
  • Hermes Traj

    AlexAI-MCP/hermes-CCC

    Capture Claude Code interaction trajectories in training-friendly formats.

    135 GitHub stars~1.6k tokensUpdated 6 mo ago
    Auto-check passed

Categories

Questions about Oss Forensics

What does Oss Forensics do?

Open-source security forensics - analyze repositories, dependencies, and code for malicious patterns, supply chain risks, and vulnerabilities. Oss Forensics is an agent skill from AlexAI-MCP/hermes-CCC. Open-source security forensics - analyze repositories, dependencies, and code for malicious patterns, supply chain risks, and vulnerabilities.

When should I use Oss Forensics?

Oss Forensics fits situations like: tasks that involve Supply chain security.

How do I install Oss Forensics in Claude Code?

Run `npx skills add AlexAI-MCP/hermes-CCC --skill oss-forensics -a claude-code`. Or copy the skill folder (skills/oss-forensics in AlexAI-MCP/hermes-CCC) into .claude/skills/oss-forensics in your project. Claude Code loads it when a task matches its description.

How do I install Oss Forensics in Codex?

Run `npx skills add AlexAI-MCP/hermes-CCC --skill oss-forensics -a codex`. Or copy the skill folder (skills/oss-forensics in AlexAI-MCP/hermes-CCC) into .agents/skills/oss-forensics in your project. Codex loads it when a task matches its description.

Can I use Oss Forensics in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add AlexAI-MCP/hermes-CCC --skill oss-forensics -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/oss-forensics, .gemini/skills/oss-forensics, .github/skills/oss-forensics and .opencode/skills/oss-forensics in your project.

What does Oss Forensics need to run?

Going by SKILL.md and its folder, Oss Forensics needs the command-line tools its instructions call (pip, npm, cargo, trivy and git).

Does Oss Forensics access the network?

SKILL.md contains no URLs. Its commands use pip, npm and git, which can reach the network depending on how they are called. This is read from the text; nothing was executed.

Is Oss Forensics safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Oss Forensics use?

Oss Forensics is published under the MIT licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Oss Forensics use?

About 1.8k tokens (SKILL.md is roughly 7.3k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Oss Forensics?

Skills that share tags, products or a category with Oss Forensics: Skill Scanner (getsentry/skills, 1k stars), Serenity Aleabitoreddit (yan-labs/serenity-aleabitoreddit, 481 stars), Eu Cra (Sushegaad/Claude-Skills-Governance-Risk-and-Compliance, 946 stars) and Kesekit Check (cdppcorp/KESE-KIT, 360 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Oss Forensics?

AlexAI-MCP (a GitHub user) maintains it in AlexAI-MCP/hermes-CCC, which has 135 GitHub stars. The repository holds 44 skills in this directory. The repository was last updated on April 8, 2026.

Source: AlexAI-MCP/hermes-CCC on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.