npm Supply Chain Check
majiayu000/spellbook
Scans a repository, its lockfiles and node_modules for known malicious npm package versions and install-time indicators, using a read-only Python scanner.
扫描代码安全漏洞,检测依赖漏洞、密钥泄露和OWASP安全模式。当用户提到安全扫描、漏洞检测、依赖审计、密钥泄露、API key、OWASP、npm audit、pip-audit或SQL注入/XSS等关键词时触发。
$ npx skills add rongxinzy/RongxinAI --skill code-safety-audit -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install rongxinzy/RongxinAI code-safety-audit --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/rongxinzy/RongxinAI.git skills-src && mkdir -p .claude/skills && cp -r skills-src/SKILLs/code-safety-audit .claude/skills/code-safety-audit && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "code-safety-audit" agent skill from https://github.com/rongxinzy/RongxinAI/tree/main/SKILLs/code-safety-audit into .claude/skills/code-safety-audit/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "code-safety-audit", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/rongxinzy/RongxinAI/tree/main/SKILLs/code-safety-auditType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add rongxinzy/RongxinAI --skill code-safety-audit -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install rongxinzy/RongxinAI code-safety-audit --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/rongxinzy/RongxinAI.git skills-src && mkdir -p .agents/skills && cp -r skills-src/SKILLs/code-safety-audit .agents/skills/code-safety-audit && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "code-safety-audit" agent skill from https://github.com/rongxinzy/RongxinAI/tree/main/SKILLs/code-safety-audit into .agents/skills/code-safety-audit/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "code-safety-audit", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add rongxinzy/RongxinAI --skill code-safety-audit -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install rongxinzy/RongxinAI code-safety-audit --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/rongxinzy/RongxinAI.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/SKILLs/code-safety-audit .cursor/skills/code-safety-audit && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "code-safety-audit" agent skill from https://github.com/rongxinzy/RongxinAI/tree/main/SKILLs/code-safety-audit into .cursor/skills/code-safety-audit/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "code-safety-audit", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/rongxinzy/RongxinAI.git --path SKILLs/code-safety-audit--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add rongxinzy/RongxinAI --skill code-safety-audit -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install rongxinzy/RongxinAI code-safety-audit --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/rongxinzy/RongxinAI.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/SKILLs/code-safety-audit .gemini/skills/code-safety-audit && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "code-safety-audit" agent skill from https://github.com/rongxinzy/RongxinAI/tree/main/SKILLs/code-safety-audit into .gemini/skills/code-safety-audit/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "code-safety-audit", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install rongxinzy/RongxinAI code-safety-auditInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add rongxinzy/RongxinAI --skill code-safety-audit -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/rongxinzy/RongxinAI.git skills-src && mkdir -p .github/skills && cp -r skills-src/SKILLs/code-safety-audit .github/skills/code-safety-audit && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "code-safety-audit" agent skill from https://github.com/rongxinzy/RongxinAI/tree/main/SKILLs/code-safety-audit into .github/skills/code-safety-audit/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "code-safety-audit", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add rongxinzy/RongxinAI --skill code-safety-audit -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install rongxinzy/RongxinAI code-safety-audit --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/rongxinzy/RongxinAI.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/SKILLs/code-safety-audit .opencode/skills/code-safety-audit && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "code-safety-audit" agent skill from https://github.com/rongxinzy/RongxinAI/tree/main/SKILLs/code-safety-audit into .opencode/skills/code-safety-audit/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "code-safety-audit", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
code-safety-audit扫描代码安全漏洞,检测依赖漏洞、密钥泄露和OWASP安全模式。当用户提到安全扫描、漏洞检测、依赖审计、密钥泄露、API key、OWASP、npm audit、pip-audit或SQL注入/XSS等关键词时触发。
Code Safety Audit is an agent skill from rongxinzy/RongxinAI. 扫描代码安全漏洞,检测依赖漏洞、密钥泄露和OWASP安全模式。当用户提到安全扫描、漏洞检测、依赖审计、密钥泄露、API key、OWASP、npm audit、pip-audit或SQL注入/XSS等关键词时触发。
Its SKILL.md is about 870 tokens, which your agent loads only when the skill is triggered. The skill folder holds 7 other files, including scripts (for example `scripts/security_scan.py` and `zhiyuan/metadata.yaml`).
It sits in Security, covering Web application vulnerabilities and Dependency management. It works with SQL, Python and npm. The repository describes itself as: An all-in-one local AI Agent workspace with a fully self-developed stack. The licence is MIT.
3 steps, taken from the step headings in SKILL.md.
Read from SKILL.md and the folder at commit 26406d6. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Ships 1 file in scripts/ (Python), which the agent can run.
Shell commands in SKILL.md call:
python3npmFrom the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md. Its commands use npm, which can reach the network depending on how they are called.
From URLs in SKILL.md, links to its own repository left out.
Names these keys or tokens, usually read from environment variables:
AWS_KEYFrom names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Code Safety Audit loads about 868 tokens when it runs. Until then it costs about 31 tokens; SKILL.md has 185 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); the scripts in this folder are not scanned.
The full file from rongxinzy/RongxinAI at commit 26406d6, republished under its MIT licence (© rongxinzy). 185 words, ~868 tokens.
.claude/skills/code-safety-audit/SKILL.md (or your agent's skills folder). This skill also uses 5 other files; get the full folder from GitHub.代码安全扫描工具,提供三大扫描能力:
# 扫描当前目录(全部检查项)
python3 scripts/security_scan.py .
# 仅扫描依赖漏洞
python3 scripts/security_scan.py --mode deps .
# 仅检测密钥泄露
python3 scripts/security_scan.py --mode secrets /path/to/project
# 仅检测 OWASP 安全模式
python3 scripts/security_scan.py --mode owasp .
# 输出 JSON 格式报告
python3 scripts/security_scan.py --format json --output report.json .
# 只显示 high 及以上严重级别
python3 scripts/security_scan.py --severity high .自动检测项目类型并调用相应工具:
| 项目类型 | 检测文件 | 使用工具 |
|---|---|---|
| Node.js | package.json + package-lock.json | npm audit |
| Python | requirements.txt / pyproject.toml / Pipfile | pip-audit |
如果对应的审计工具未安装,会给出提示而不是报错。
通过两种方式检测:
正则匹配:覆盖常见的密钥格式
| 密钥类型 | 示例模式 |
|---|---|
| AWS Access Key | AKIA 开头的 20 字符 |
| GitHub Token | ghp_、github_pat_ 开头 |
| Slack Token | xoxb-、xoxp- 开头 |
| Stripe Key | sk_live_、pk_live_ 开头 |
| 私钥文件 | -----BEGIN PRIVATE KEY----- |
| 通用 API Key | api_key = "..." 格式 |
| URL 内嵌凭据 | https://user:pass@host |
| JWT Token | eyJ... 格式 |
Shannon 熵值分析:对代码中的字符串常量计算信息熵(阈值 > 4.5 且长度 >= 20),用于发现非标准格式的密钥。
覆盖 OWASP Top 10 中可静态检测的安全模式:
| OWASP 分类 | 检测模式 |
|---|---|
| A02: 密码学失败 | 弱哈希 (MD5/SHA1)、弱加密 (DES/RC4) |
| A03: 注入 | SQL 注入、命令注入 (os.system/subprocess shell/eval/exec)、XSS (innerHTML/document.write/dangerouslySetInnerHTML/v-html) |
| A04: 不安全设计 | 路径遍历 |
| A05: 安全配置错误 | Debug 模式开启、CORS 通配符、绑定 0.0.0.0 |
| A08: 完整性失败 | 不安全反序列化 (pickle/yaml.load/marshal/unserialize) |
| A10: SSRF | 用户输入直接用于 HTTP 请求 |
支持语言:Python、JavaScript/TypeScript、Java、PHP、Ruby、Go 等。
| 参数 | 说明 | 默认值 |
|---|---|---|
TARGET | 扫描目标目录 | 当前目录 |
--mode MODE | 扫描模式:all、deps、secrets、owasp | all |
--format FORMAT | 输出格式:text、json | text |
--output FILE | 输出文件路径 | stdout |
--severity LEVEL | 最低报告级别:low、medium、high、critical | low |
--exclude-dir DIR | 额外排除的目录(可重复使用) | - |
--max-file-kb SIZE | 单文件最大扫描大小 (KB) | 512 |
-h, --help | 显示帮助 | - |
=== Security Scan Report ===
Target: /path/to/project
Modules: deps, secrets, owasp
[CRITICAL] AWS Access Key ID
File: src/config.py:15
Code: AWS_KEY = "AKIAIOSFODNN7EXAMPLE"
[HIGH] SQL Injection (f-string)
File: src/db.py:42
Code: cursor.execute(f"SELECT * FROM users WHERE id={user_id}")
--- Summary ---
Critical: 1 | High: 1 | Medium: 0 | Low: 0
Total findings: 2{
"target": "/path/to/project",
"scan_time": "2026-04-14T10:30:00",
"findings": [
{
"scanner": "secrets",
"name": "AWS Access Key ID",
"severity": "critical",
"file": "src/config.py",
"line": 15,
"snippet": "AWS_KEY = \"AKIAIOSFODNN7EXAMPLE\"",
"category": "secret-pattern"
}
],
"summary": {"critical": 1, "high": 0, "medium": 0, "low": 0, "total": 1}
}| 退出码 | 含义 |
|---|---|
0 | 无发现 |
1 | 有发现(至少一个安全问题) |
2 | 扫描器自身错误 |
npm(Node.js 项目)、pip-audit(Python 项目)© rongxinzy, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
SKILL.md and 5 other files (scripts) in SKILLs/code-safety-audit of rongxinzy/RongxinAI.
Open the folder on GitHubat commit 26406d6
Code Safety Audit next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Code Safety Audit this skillrongxinzy/RongxinAI | 154 | — | ~868 | Automated safety check: Pass | MIT | |
| npm Supply Chain Checkmajiayu000/spellbook | 286 | — | ~1.5k | Automated safety check: Pass | MIT | |
| Golang Securityunxed/f4 | 241 | 2 repos | ~3.6k | Automated safety check: Pass | MIT | |
| Dependency Scanningsickn33/agentic-awesome-skills | 47k | 1 repos | ~2.4k | Automated safety check: Pass | MIT | |
| Sast Sqliutkusen/sast-skills | 1.3k | — | ~6k | Automated safety check: Pass | MIT | |
| Sca AuditOWASP/secure-agent-playbook | 187 | — | ~494 | Automated safety check: Pass | CC-BY-4.0 |
majiayu000/spellbook
Scans a repository, its lockfiles and node_modules for known malicious npm package versions and install-time indicators, using a read-only Python scanner.
unxed/f4
Security best practices and vulnerability prevention for Golang — injection (SQL, command, XSS), cryptography, path traversal, SSRF and HTTP security headers, cookies, secrets management, memory…
sickn33/agentic-awesome-skills
Scan package dependencies for known vulnerabilities using Snyk, Dependabot, and OWASP Dependency-Check.
utkusen/sast-skills
Detect SQL injection vulnerabilities in a codebase using a three-phase approach: recon (find unsafe SQL construction sites), batched verify (trace user input to those sites in parallel subagents, 3…
OWASP/secure-agent-playbook
Scan project dependencies for known vulnerabilities (CVEs). An agent skill from OWASP/secure-agent-playbook.
aiskillstore/marketplace
Comprehensive security vulnerability analysis for codebases and infrastructure.
rongxinzy/RongxinAI
SaaS financial health advisor. An agent skill from rongxinzy/RongxinAI.
rongxinzy/RongxinAI
Reduce voluntary and involuntary churn through cancel flow design, save offers, exit surveys, and dunning sequences.
rongxinzy/RongxinAI
The only skill for creating a new PowerPoint deck. An agent skill from rongxinzy/RongxinAI.
rongxinzy/RongxinAI
以命理场景为主的八字排盘、黄历查询与大运/流年/流月/流日/流时区间查询技能。用于用户请求“算八字”“四柱排盘”“阳历/农历转八字”“查黄历/宜忌”“查未来10年流年”“查下个月流日/流时”等场景;关键词包括:八字、四柱、命理、大运、流年、流月、流日、流时、时辰、阳历转八字、农历转八字、黄历、宜忌、干支日期。真太阳时换算属于辅助能力,仅在需要校时定盘时使用。
rongxinzy/RongxinAI
ZhiYuan Agent expert package lifecycle manager for the pi engine.
rongxinzy/RongxinAI
飞书邮箱:Use when user mentions 起草邮件、写邮件、草稿、发送/回复/转发邮件、查阅邮件、看邮件、搜索邮件、邮件文件夹、邮件标签、邮件联系人、监听新邮件、邮件收信规则等;use for mail/email intent only.
Categories
扫描代码安全漏洞,检测依赖漏洞、密钥泄露和OWASP安全模式。当用户提到安全扫描、漏洞检测、依赖审计、密钥泄露、API key、OWASP、npm audit、pip-audit或SQL注入/XSS等关键词时触发。. Code Safety Audit is an agent skill from rongxinzy/RongxinAI.
Code Safety Audit fits situations like: tasks that involve Web application vulnerabilities; tasks that involve Dependency management.
Run `npx skills add rongxinzy/RongxinAI --skill code-safety-audit -a claude-code`. Or copy the skill folder (SKILLs/code-safety-audit in rongxinzy/RongxinAI) into .claude/skills/code-safety-audit in your project. Claude Code loads it when a task matches its description.
Run `npx skills add rongxinzy/RongxinAI --skill code-safety-audit -a codex`. Or copy the skill folder (SKILLs/code-safety-audit in rongxinzy/RongxinAI) into .agents/skills/code-safety-audit in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add rongxinzy/RongxinAI --skill code-safety-audit -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/code-safety-audit, .gemini/skills/code-safety-audit, .github/skills/code-safety-audit and .opencode/skills/code-safety-audit in your project.
Going by SKILL.md and its folder, Code Safety Audit needs Python for the scripts in its folder, the command-line tools its instructions call (python3 and npm) and credentials named AWS_KEY. Our summary lists: Python 3; Node.js; A credential in AWS_KEY.
SKILL.md contains no URLs. Its commands use npm, which can reach the network depending on how they are called. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. The check reads SKILL.md only: the scripts in the folder are not scanned, so read them before running anything.
Code Safety Audit is published under the MIT licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.
About 868 tokens (SKILL.md is roughly 3.5k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
Skills that share tags, products or a category with Code Safety Audit: npm Supply Chain Check (majiayu000/spellbook, 286 stars), Golang Security (unxed/f4, 241 stars), Dependency Scanning (sickn33/agentic-awesome-skills, 47k stars) and Sast Sqli (utkusen/sast-skills, 1.3k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
rongxinzy (a GitHub organization) maintains it in rongxinzy/RongxinAI, which has 154 GitHub stars. The repository holds 94 skills in this directory. The repository was last updated on October 8, 2026.
Source: rongxinzy/RongxinAI on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.