Agent skill

Dotnet Inspect Project Analysis

by richlander in richlander/dotnet-inspect

Run evidence-backed workflows for supply chain, dependency neighborhoods, architecture, performance, unsafe and ownership review, upgrades, and ecosystem integration.

No licenceAuto-check passedSecurity

Install Dotnet Inspect Project Analysis

skills CLI
$ npx skills add richlander/dotnet-inspect --skill dotnet-inspect-project-analysis -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install richlander/dotnet-inspect dotnet-inspect-project-analysis --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/richlander/dotnet-inspect.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/project-analysis .claude/skills/dotnet-inspect-project-analysis && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
dotnet-inspect-project-analysis
GitHub stars
151
Token cost
~4.4k tokens
SKILL.md length
1,938 words
Files
1
Skills in repo
21
Repo updated
First seen
Licence
None found

At a glance

Run evidence-backed workflows for supply chain, dependency neighborhoods, architecture, performance, unsafe and ownership review, upgrades, and ecosystem integration.

  • Works in 7 steps: Supply-chain dossier → Dependency neighborhood → Architecture and implementation map → …
  • Tasks that involve Supply chain security
  • SKILL.md covers Choose a workflow, 1. Supply-chain dossier, 2. Dependency neighborhood and 3. Architecture and…, plus 4 more sections
  • Calls jq

What it does

Dotnet Inspect Project Analysis is an agent skill from richlander/dotnet-inspect. Run evidence-backed workflows for supply chain, dependency neighborhoods, architecture, performance, unsafe and ownership review, upgrades, and ecosystem integration.

Its SKILL.md is about 4.4k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Security, covering Supply chain security. It works with .NET. The repository describes itself as: Tool to inspect .NET assets, like docker inspect and kubectl describe.

When your agent uses it

  • Tasks that involve Supply chain security

Example prompts

  • “/dotnet-inspect-project-analysis”

Workflow steps

7 steps, taken from the step headings in SKILL.md.

  1. Supply-chain dossier
  2. Dependency neighborhood
  3. Architecture and implementation map
  4. Performance leverage
  5. Unsafe and ownership review
  6. Upgrade impact
  7. Ecosystem integration

What it can do on your machine

Read from SKILL.md and the folder at commit 2b11462. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • jq

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Dotnet Inspect Project Analysis loads about 4.4k tokens when it runs. Until then it costs about 50 tokens; SKILL.md has 1,938 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~50
When it runs · the whole SKILL.md, loaded when a task matches
~4.4k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

Without a licence we can't republish the file, so here is its outline and opening line. It has 1,938 words (~4,431 tokens).

“Use this skill when the user wants a report rather than one isolated fact:”

— opening of SKILL.md by richlander
name
dotnet-inspect-project-analysis
version
0.3.0

Read the full SKILL.md on GitHub

Files

Just SKILL.md in skills/project-analysis of richlander/dotnet-inspect.

Open the folder on GitHubat commit 2b11462

Compare with similar skills

Dotnet Inspect Project Analysis next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Dotnet Inspect Project Analysis compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Dotnet Inspect Project Analysis this skillrichlander/dotnet-inspect151—~4.4kAutomated safety check: PassNone
Interlinked Supply ChainQuentinCody/interlinked-cli178—~2.8kAutomated safety check: PassMIT
Dependency AwarenessGoldziher/ai-rulez158—~250Automated safety check: PassMIT
Skill Scannergetsentry/skills1k4 repos~2.5kAutomated safety check: WarnApache-2.0
Serenity Aleabitoreddityan-labs/serenity-aleabitoreddit4801 repos~3.3kAutomated safety check: PassNone
Eu CraSushegaad/Claude-Skills-Governance-Risk-and-Compliance9421 repos~4kAutomated safety check: PassMIT

Similar skills

  • Interlinked Supply Chain

    QuentinCody/interlinked-cli

    Respond to blocked package installs and manage the Interlinked supply-chain allowlist.

    178 GitHub stars~2.8k tokensUpdated 6 days ago
    SecurityAuto-check passed
  • Dependency Awareness

    Goldziher/ai-rulez

    Per-language dependency vulnerability audit tool reference (cargo audit/deny, pip-audit, npm/pnpm audit, govulncheck, bundler-audit, composer audit, OWASP dependency-check, dotnet vulnerable…

    158 GitHub stars~250 tokensUpdated yesterday
    SecurityAuto-check passed
  • Skill Scanner

    getsentry/skills

    Official

    Scan agent skills for security issues. An agent skill from getsentry/skills.

    1k GitHub starsUsed in 4 repos~2.5k tokens
    SecurityAuto-check: warnings
  • Serenity Aleabitoreddit

    yan-labs/serenity-aleabitoreddit

    Apply trader Serenity's (@aleabitoreddit) AI/semiconductor supply-chain analytical lens to US-stock ideas and market judgment.

    480 GitHub starsUsed in 1 repo~3.3k tokens
    SecurityAuto-check passed
  • Eu Cra

    Sushegaad/Claude-Skills-Governance-Risk-and-Compliance

    Expert EU Cyber Resilience Act (CRA) advisor for Regulation (EU) 2024/2847 — mandatory cybersecurity and vulnerability handling requirements for all products with digital elements (PDEs) sold in the…

    942 GitHub starsUsed in 1 repo~4k tokens
    SecurityAuto-check passed
  • Kesekit Check

    cdppcorp/KESE-KIT

    Run a pre-deployment security compliance checklist based on KISA guidelines.

    361 GitHub stars~1.3k tokensUpdated 6 mo ago
    SecurityAuto-check passed

More from richlander/dotnet-inspect

All 21 skills in this repo
  • Corpus Maintenance

    richlander/dotnet-inspect

    A skill your agent uses for authored-source correspondence corpus maintenance: verify the vendored CIVIL/EVIL snapshot for drift against upstream, re-harvest or re-pin it, run the offline benchmark…

    151 GitHub stars~2.4k tokensUpdated yesterday
    Auto-check passed
  • Daily Operations

    richlander/dotnet-inspect

    A skill your agent uses for daily chores in dotnet-inspect; establish release-candidate readiness, then inspect main CI, staging, performance, runtime-pin, security, dependency, and regression runs.

    151 GitHub stars~3.1k tokensUpdated yesterday
    Auto-check passed
  • Deep Inspect

    richlander/dotnet-inspect

    A skill your agent uses when a dotnet-inspect change needs expensive evidence outside normal PR CI, or when preparing release certification; coordinate Deep Inspect lanes (full slow tests…

    151 GitHub stars~1.9k tokensUpdated yesterday
    Auto-check passed
  • Deep Inspect Analysis

    richlander/dotnet-inspect

    A skill your agent uses for opt-in Deep Inspect run triage: test lane failures, census artifacts, pinned-subset drift, and routing findings into issues or tracker updates.

    151 GitHub stars~1.4k tokensUpdated yesterday
    Auto-check passed
  • Dotnet Inspect Package Skills

    richlander/dotnet-inspect

    Discover and use version-matched agent skills from NuGet packages, and persist selected skills in a repository only when the user explicitly requests it.

    151 GitHub stars~1.8k tokensUpdated yesterday
    Auto-check passed
  • Release

    richlander/dotnet-inspect

    A skill your agent uses when shipping a new dotnet-inspect version; independently validate one immutable candidate, present concerns, and publish only after the operator decides.

    151 GitHub stars~1.1k tokensUpdated yesterday
    Auto-check passed

Works with

Categories

Questions about Dotnet Inspect Project Analysis

What does Dotnet Inspect Project Analysis do?

Run evidence-backed workflows for supply chain, dependency neighborhoods, architecture, performance, unsafe and ownership review, upgrades, and ecosystem integration. Dotnet Inspect Project Analysis is an agent skill from richlander/dotnet-inspect. Run evidence-backed workflows for supply chain, dependency neighborhoods, architecture, performance, unsafe and ownership review, upgrades, and ecosystem integration.

When should I use Dotnet Inspect Project Analysis?

Dotnet Inspect Project Analysis fits situations like: tasks that involve Supply chain security.

How do I install Dotnet Inspect Project Analysis in Claude Code?

Run `npx skills add richlander/dotnet-inspect --skill dotnet-inspect-project-analysis -a claude-code`. Or copy the skill folder (skills/project-analysis in richlander/dotnet-inspect) into .claude/skills/dotnet-inspect-project-analysis in your project. Claude Code loads it when a task matches its description.

How do I install Dotnet Inspect Project Analysis in Codex?

Run `npx skills add richlander/dotnet-inspect --skill dotnet-inspect-project-analysis -a codex`. Or copy the skill folder (skills/project-analysis in richlander/dotnet-inspect) into .agents/skills/dotnet-inspect-project-analysis in your project. Codex loads it when a task matches its description.

Can I use Dotnet Inspect Project Analysis in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add richlander/dotnet-inspect --skill dotnet-inspect-project-analysis -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/dotnet-inspect-project-analysis, .gemini/skills/dotnet-inspect-project-analysis, .github/skills/dotnet-inspect-project-analysis and .opencode/skills/dotnet-inspect-project-analysis in your project.

What does Dotnet Inspect Project Analysis need to run?

Going by SKILL.md and its folder, Dotnet Inspect Project Analysis needs the command-line tools its instructions call (jq).

Does Dotnet Inspect Project Analysis access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Dotnet Inspect Project Analysis safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Dotnet Inspect Project Analysis use?

No licence was found for Dotnet Inspect Project Analysis or its repository. Without one, default copyright applies: ask the author before reusing or redistributing it.

How many tokens does Dotnet Inspect Project Analysis use?

About 4.4k tokens (SKILL.md is roughly 18k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Dotnet Inspect Project Analysis?

Skills that share tags, products or a category with Dotnet Inspect Project Analysis: Interlinked Supply Chain (QuentinCody/interlinked-cli, 178 stars), Dependency Awareness (Goldziher/ai-rulez, 158 stars), Skill Scanner (getsentry/skills, 1k stars) and Serenity Aleabitoreddit (yan-labs/serenity-aleabitoreddit, 480 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Dotnet Inspect Project Analysis?

richlander (a GitHub user) maintains it in richlander/dotnet-inspect, which has 151 GitHub stars. The repository holds 21 skills in this directory. The repository was last updated on October 8, 2026.

Source: richlander/dotnet-inspect on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.