Agent skill

Maven Dependency Management

by TheBushidoCollective in TheBushidoCollective/han

A skill your agent uses when managing Maven dependencies, resolving dependency conflicts, configuring BOMs, or optimizing dependency trees in Java projects.

Custom licenceAuto-check: notesDevelopment

Install Maven Dependency Management

skills CLI
$ npx skills add TheBushidoCollective/han --skill maven-dependency-management -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install TheBushidoCollective/han maven-dependency-management --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/TheBushidoCollective/han.git skills-src && mkdir -p .claude/skills && cp -r skills-src/plugins/tools/maven/skills/maven-dependency-management .claude/skills/maven-dependency-management && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
maven-dependency-management
GitHub stars
198
Used in
1 other repo
Token cost
~3.1k tokens
SKILL.md length
374 words
Files
1
Skills in repo
11
Repo updated
First seen
Licence
Custom licence

At a glance

A skill your agent uses when managing Maven dependencies, resolving dependency conflicts, configuring BOMs, or optimizing dependency trees in Java projects.

  • Works in 10 steps: Use dependencyManagement - Centralize… → Import BOMs - Use well-maintained BOMs… → Avoid Version Ranges - Pin exact… → …
  • Managing Maven dependencies
  • SKILL.md covers Overview, Dependency Declaration, Dependency Scopes and Version Management, plus 6 more sections
  • Calls mvn; reaches repo.maven.apache.org

What it does

Maven Dependency Management is an agent skill from TheBushidoCollective/han. Use when managing Maven dependencies, resolving dependency conflicts, configuring BOMs, or optimizing dependency trees in Java projects.

Its SKILL.md is about 3.1k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Development, covering Dependency management. It works with Java. The repository describes itself as: A curated marketplace of Claude Code plugins that embody the principles of ethical and professional software development.

When your agent uses it

  • Managing Maven dependencies
  • Resolving dependency conflicts
  • Configuring BOMs
  • Optimizing dependency trees in Java projects

Example prompts

  • “/maven-dependency-management”

Requirements

  • Pre-approved tools (allowed-tools): Read, Write, Edit, Bash, Glob, Grep

Workflow steps

10 steps, taken from the first numbered list in SKILL.md.

  1. Use dependencyManagement - Centralize versions in parent POMs
  2. Import BOMs - Use well-maintained BOMs for framework dependencies
  3. Avoid Version Ranges - Pin exact versions for reproducibility
  4. Regular Updates - Keep dependencies current for security
  5. Minimize Scopes - Use appropriate scopes to reduce package size
  6. Exclude Unused - Remove unused transitive dependencies
  7. Document Exclusions - Comment why exclusions are needed
  8. Run dependency:analyze - Regularly check for issues
  9. Use Enforcer Plugin - Ensure dependency convergence
  10. Lock Versions - Use versions-maven-plugin for updates

What it can do on your machine

Read from SKILL.md and the folder at commit 19caa51. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves these tools, so the agent can use them without asking each time:

    • Read
    • Write
    • Edit
    • Bash
    • Glob
    • Grep

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • mvn

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Hosts in commands or code, which the agent is likely to contact:

    • repo.maven.apache.org

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Maven Dependency Management loads about 3.1k tokens when it runs. Until then it costs about 41 tokens; SKILL.md has 374 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~41
When it runs · the whole SKILL.md, loaded when a task matches
~3.1k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check: notes

The automated check noted patterns worth knowing about, such as sudo or a known installer.

  • NotePre-approves every shell command (allowed-tools: Bash)SKILL.md
    allowed-tools: Read, Write, Edit, Bash, Glob, Grep

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

Its licence (Custom licence) doesn't allow us to republish the file, so here is its outline and opening line. It has 374 words (~3,087 tokens).

“Master Maven dependency management including dependency declaration, scope management, version resolution, BOMs, and dependency tree optimization.”

— opening of SKILL.md by TheBushidoCollective, Custom licence
name
maven-dependency-management
allowed-tools
Read, Write, Edit, Bash, Glob, Grep
user-invocable
false

Read the full SKILL.md on GitHub

Files

Just SKILL.md in plugins/tools/maven/skills/maven-dependency-management of TheBushidoCollective/han.

Open the folder on GitHubat commit 19caa51

Used in 1 other repository

We found 1 copy of this SKILL.md (exact, near-identical or edited) in other folders, from 1 other GitHub owner. This page covers the copy in TheBushidoCollective/han, which our catalogue first saw on October 7, 2026.

Compare with similar skills

Maven Dependency Management next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Maven Dependency Management compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Maven Dependency Management this skillTheBushidoCollective/han1981 repos~3.1kAutomated safety check: NotesCustom licence
WxJava Upgrade Guidebinarywang/WxJava33k—~129Automated safety check: PassApache-2.0
Dependabot PR Reviewkernitus/BukkitOldCombatMechanics225—~882Automated safety check: PassMPL-2.0
Batch Deps UpgradeXRPLF/xrpl4j133—~1.6kAutomated safety check: PassISC
Grails 8 Upgrade Guideapache/grails-core2.9k—~20kAutomated safety check: PassApache-2.0
110 Java Maven Best Practicesjabrena/plinth447—~1.4kAutomated safety check: PassApache-2.0

Similar skills

  • WxJava Upgrade Guide

    binarywang/WxJava

    Plans a WxJava version upgrade, checking the BOM, module dependencies, JDK version and configuration, with phased steps and clear rollback conditions.

    33k GitHub stars~129 tokensUpdated yesterday
    DevelopmentAuto-check passed
  • Dependabot PR Review

    kernitus/BukkitOldCombatMechanics

    A skill your agent uses for Dependabot PRs, dependency bumps, Gradle or Maven dependency updates, GitHub Actions updates, dependency changelog/licence/release-note review, JVM/classfile checks, and…

    225 GitHub stars~882 tokensUpdated 7 days ago
    DevelopmentAuto-check passed
  • Batch Deps Upgrade

    XRPLF/xrpl4j

    Batch all open Dependabot dependency upgrade PRs into a single PR

    133 GitHub stars~1.6k tokensUpdated 3 days ago
    DevelopmentAuto-check passed
  • Grails 8 Upgrade Guide

    apache/grails-core

    Guides moving a Grails application from 7.x to Grails 8 and turns the official upgrade guide into a checklist of breaking changes.

    2.9k GitHub stars~20k tokensUpdated today
    DevelopmentAuto-check passed
  • A skill your agent uses when you need to review, improve, or troubleshoot a Maven pom.xml file — including dependency management with BOMs, plugin configuration, version centralization, multi-module…

    447 GitHub stars~1.4k tokensUpdated 3 days ago
    DevelopmentAuto-check passed
  • Senior Java

    benchflow-ai/skillsbench

    World-class Java and Spring Boot development skill for enterprise applications, microservices, and cloud-native systems.

    1.8k GitHub stars~5k tokensUpdated 2 mo ago
    Backend & APIsAuto-check passed

More from TheBushidoCollective/han

All 11 skills in this repo
  • Android Jetpack Compose

    TheBushidoCollective/han

    A skill your agent uses when building Android UIs with Jetpack Compose, managing state with remember/mutableStateOf, or implementing declarative UI patterns.

    198 GitHub starsUsed in 1 repo~2.3k tokens
    Auto-check: notes
  • Maven Build Lifecycle

    TheBushidoCollective/han

    A skill your agent uses when working with Maven build phases, goals, profiles, or customizing the build process for Java projects.

    198 GitHub starsUsed in 1 repo~2.9k tokens
    Auto-check: notes
  • Maven Plugin Configuration

    TheBushidoCollective/han

    A skill your agent uses when configuring Maven plugins, setting up common plugins like compiler, surefire, jar, or creating custom plugin executions.

    198 GitHub starsUsed in 1 repo~4.8k tokens
    Auto-check: notes
  • Absinthe Resolvers

    TheBushidoCollective/han

    A skill your agent uses when implementing GraphQL resolvers with Absinthe.

    198 GitHub stars~799 tokensUpdated 1 mo ago
    Auto-check passed
  • Absinthe Schema

    TheBushidoCollective/han

    A skill your agent uses when designing GraphQL schemas with Absinthe.

    198 GitHub stars~774 tokensUpdated 1 mo ago
    Auto-check passed
  • Absinthe Subscriptions

    TheBushidoCollective/han

    A skill your agent uses when implementing real-time GraphQL subscriptions with Absinthe.

    198 GitHub stars~875 tokensUpdated 1 mo ago
    Auto-check passed

Works with

Categories

Questions about Maven Dependency Management

What does Maven Dependency Management do?

A skill your agent uses when managing Maven dependencies, resolving dependency conflicts, configuring BOMs, or optimizing dependency trees in Java projects. Maven Dependency Management is an agent skill from TheBushidoCollective/han. Use when managing Maven dependencies, resolving dependency conflicts, configuring BOMs, or optimizing dependency trees in Java projects.

When should I use Maven Dependency Management?

Maven Dependency Management fits situations like: managing Maven dependencies; resolving dependency conflicts; configuring BOMs; optimizing dependency trees in Java projects.

How do I install Maven Dependency Management in Claude Code?

Run `npx skills add TheBushidoCollective/han --skill maven-dependency-management -a claude-code`. Or copy the skill folder (plugins/tools/maven/skills/maven-dependency-management in TheBushidoCollective/han) into .claude/skills/maven-dependency-management in your project. Claude Code loads it when a task matches its description.

How do I install Maven Dependency Management in Codex?

Run `npx skills add TheBushidoCollective/han --skill maven-dependency-management -a codex`. Or copy the skill folder (plugins/tools/maven/skills/maven-dependency-management in TheBushidoCollective/han) into .agents/skills/maven-dependency-management in your project. Codex loads it when a task matches its description.

Can I use Maven Dependency Management in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add TheBushidoCollective/han --skill maven-dependency-management -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/maven-dependency-management, .gemini/skills/maven-dependency-management, .github/skills/maven-dependency-management and .opencode/skills/maven-dependency-management in your project.

What does Maven Dependency Management need to run?

Going by SKILL.md and its folder, Maven Dependency Management needs the command-line tools its instructions call (mvn). Its frontmatter pre-approves these tools: Read, Write, Edit, Bash, Glob, Grep.

Does Maven Dependency Management access the network?

SKILL.md names 1 domain. In commands or code: repo.maven.apache.org; the agent is likely to contact it when it follows the instructions. This is read from the text; nothing was executed.

Is Maven Dependency Management safe to install?

Our automated static check of SKILL.md found notes only (pre-approves every shell command (allowed-tools: bash)), nothing it rates as a warning. It is not a guarantee. Review the folder before installing.

What licence does Maven Dependency Management use?

Maven Dependency Management has a licence file (the repository's licence) that doesn't match a standard licence. Read it on GitHub before reusing the skill.

How many tokens does Maven Dependency Management use?

About 3.1k tokens (SKILL.md is roughly 12k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Maven Dependency Management?

Skills that share tags, products or a category with Maven Dependency Management: WxJava Upgrade Guide (binarywang/WxJava, 33k stars), Dependabot PR Review (kernitus/BukkitOldCombatMechanics, 225 stars), Batch Deps Upgrade (XRPLF/xrpl4j, 133 stars) and Grails 8 Upgrade Guide (apache/grails-core, 2.9k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Maven Dependency Management?

TheBushidoCollective (a GitHub organization) maintains it in TheBushidoCollective/han, which has 198 GitHub stars. The repository holds 11 skills in this directory. The repository was last updated on September 8, 2026.

Source: TheBushidoCollective/han on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.