Topic · Development
Best dependency management skills, page 2
Dependency management skills, ranked
Ranked by score. Sort bymost stars,trending,newest,recently updated
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 49 | Inspect, review or triage GitHub Code Scanning alerts, including CodeQL findings; apply verified dismissals when authorized. | netdata/ | 81k | — | ~1.8k | Automated safety check: Notes | GPL-3.0 | today |
| 50 | GitHub Actions CI/CD pipeline configuration for Golang projects — workflow files for test, lint, SAST, coverage and vulnerability-scan jobs, Dependabot and Renovate config files, GoReleaser release… | samber/ | 3.4k | — | ~3.7k | Automated safety check: Pass | MIT | 6 days ago |
| 51 | Sweep and update every dependency surface in the kubelb repo (go.mod, Makefile tool versions, prow images, GitHub Actions, hack/ci pins, addon Helm charts, pinned container images) and split the… | kubermatic/ | 148 | — | ~1.3k | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 52 | Comprehensively diagnose and fix a failing Dependabot PR. An agent skill from axsaucedo/kaos. | axsaucedo/ | 280 | — | ~4.2k | Automated safety check: Pass | Apache-2.0 | 5 days ago |
| 53 | Triage a host that was blocked by the Dependabot proxy egress allowlist, add it to internal/handlers/egressallowlistdefaults.yaml with the correct matching form and regression tests, and open a pull… | dependabot/ | 137 | — | ~3.6k | Automated safety check: Pass | MIT | yesterday |
| 54 | Applies safer package manager defaults and dependency vetting to JavaScript and TypeScript projects to reduce supply-chain attack risk. | bodadotsh/ | 859 | — | ~1k | Automated safety check: Warn | MIT | 7 days ago |
| 55 | Babysit a Dependabot dependency-bump PR all the way to merge: verify the author is the genuine Dependabot bot, diagnose and resolve any CI failure (excluding or fixing a breaking bump when needed)… | dyoshikawa/ | 1.5k | — | ~1.3k | Automated safety check: Pass | MIT | 2 days ago |
| 56 | Add BestieTemplate features (AGENTS.md, changelog, dependabot, pre-commit, lint workflow, testitem runner) to a Julia package with the bestie CLI — no Julia needed. | JuliaBesties/ | 128 | — | ~2.5k | Automated safety check: Pass | MPL-2.0 | 19 days ago |
| 57 | 57.Audit Thread A skill your agent uses when running a compatibility/parity AUDIT — enumerating where nub diverges from a reference it claims parity with (pnpm CLI grammar, a lockfile format, a Node behavior, a… | nubjs/ | 4.4k | — | ~1.8k | Automated safety check: Pass | MIT | today |
| 58 | Plans a WxJava version upgrade, checking the BOM, module dependencies, JDK version and configuration, with phased steps and clear rollback conditions. | binarywang/ | 33k | — | ~129 | Automated safety check: Pass | Apache-2.0 | 11 days ago |
| 59 | Looks up a third-party library's current documentation through the context7 MCP server instead of relying on the agent's possibly outdated training data. | duckbugio/ | 502 | — | ~408 | Automated safety check: Pass | MIT | 4 days ago |
| 60 | Looks up Kotlin Multiplatform libraries, their latest stable versions, Gradle coordinates and verified target support through klibs.io instead of guessing. | JetBrains/ | 108 | — | ~1.1k | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 61 | CI/CD with GitHub Actions for Golang — testing, linting, SAST, security scanning, coverage, Dependabot, Renovate, GoReleaser, release pipelines. | context-labs/ | 1.1k | — | ~3.5k | Automated safety check: Pass | MIT | 2 days ago |
| 62 | Bumps the databricks-sdk-go dependency in the Databricks CLI together with its pinned OpenAPI spec SHA, then regenerates the files that depend on them. | databricks/ | 404 | — | ~2k | Automated safety check: Notes | Unknown | today |
| 63 | Fix broken dependency update PRs and aggregate the ones that work into one PR. | microsoft/ | 143 | 1 repo | ~588 | Automated safety check: Pass | Unknown | today |
| 64 | Bumps the build-time and installed Node.js versions in the RStudio repository, uploads the binaries to S3, verifies the install and opens a PR. | rstudio/ | 5.1k | — | ~2.7k | Automated safety check: Pass | Unknown | today |
| 65 | Verifies that a pom.xml change did not silently alter Maven build behavior by diffing the effective POMs before and after. | christian-schlichtherle/ | 400 | — | ~883 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 66 | 66.Deps Bump Safely update Txtify dependencies or resolve Dependabot alerts. | lkmeta/ | 135 | — | ~585 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 67 | Review, apply, verify, or merge gocron dependency updates from Dependabot or manual requests. | gocronx-team/ | 808 | — | ~891 | Automated safety check: Pass | MIT | 5 days ago |
| 68 | Operate the skills-manager CLI — manage a local skill hub (install, import, distribute to agents/projects, update) and backfill provenance for source-less skills (adopt lockfile evidence, search the… | shenysun/ | 197 | — | ~7k | Automated safety check: Pass | MIT | 19 days ago |
| 69 | Fix every open Dependabot PR end-to-end on autopilot. An agent skill from axsaucedo/kaos. | axsaucedo/ | 280 | — | ~4.5k | Automated safety check: Pass | Apache-2.0 | 5 days ago |
| 70 | Guides writing, running and configuring Deno 2.9+ projects: installing npm and JSR dependencies, permissions, config file precedence and the built-in fmt, lint, test and compile toolchain. | denoland/ | 100 | — | ~2.7k | Automated safety check: Pass | MIT | 2 mo ago |
| 71 | 71.AI Server Conventions for the opentrons-ai-server FastAPI service — project structure, uv dependency management, settings, testing, Docker, and deployment. | Opentrons/ | 521 | — | ~2.5k | Automated safety check: Notes | Apache-2.0 | today |
| 72 | 72.Update Skia Update the Skia graphics library to a new Chrome milestone in SkiaSharp's mono/skia fork. | mono/ | 5.6k | — | ~2.4k | Automated safety check: Pass | MIT | today |
| 73 | Sets one monorepo's rules for toolchain pins, pnpm package operations, the shared dependency catalog and moon tasks, so the agent adds versions and scripts the right way. | pierrecomputer/ | 6.2k | — | ~1.1k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 74 | Read every open Dependabot PR for an application-code dependency (Python pip/uv and JS npm/yarn/pnpm) and carry each version bump over to the local dependency files (requirements.txt… | ossf/ | 165 | — | ~1.7k | Automated safety check: Notes | MIT | yesterday |
| 75 | 75.Bazel Hermetic Bazel build, test, and packaging commands for the Moosync project. | Moosync/ | 259 | — | ~722 | Automated safety check: Pass | GPL-3.0 | 5 days ago |
| 76 | Updates the default serverless environment version in Databricks CLI bundle templates together with its coupled Python and DB Connect pins. | databricks/ | 404 | — | ~1.3k | Automated safety check: Notes | Unknown | today |
| 77 | Bumps the pinned Quarto version across the RStudio repository, mirrors the release to the rstudio-buildtools S3 bucket, verifies it and opens a PR, on macOS and Linux. | rstudio/ | 5.1k | — | ~2.8k | Automated safety check: Pass | Unknown | today |
| 78 | 78.Dep Auditor 审计 Node.js、Python、Go、Rust、JVM、Ruby 项目的依赖漏洞、版本健康度与许可证事实;当用户要求检查 package.json、lockfile、requirements、go.mod、Cargo.toml、pom.xml、Gemfile.lock,或生成不改依赖的中文审计报告时使用 | laolaoshiren/ | 877 | — | ~895 | Automated safety check: Pass | MIT | 2 days ago |
| 79 | Bumps the dbt-artifacts-parser package semver, prepares a PyPI release, and aligns GitHub Releases with version. | yu-iskw/ | 118 | — | ~700 | Automated safety check: Pass | Apache-2.0 | 13 days ago |
| 80 | Audit repo dependencies by default and only apply library upgrades when explicitly requested. | championswimmer/ | 129 | — | ~1k | Automated safety check: Pass | No licence | 4 mo ago |
| 81 | Updates chosen or all Nix flake inputs, checks the result with nix flake check and a system rebuild, fixes warnings, then offers to commit. | Ruixi-rebirth/ | 100 | — | ~469 | Automated safety check: Pass | No licence | 16 days ago |
| 82 | Points the agent at Bun 1.4 built-in APIs before it installs an npm package, so image, browser, markdown, cron, PTY and test work uses what Bun already ships. | code-yeongyu/ | 470 | — | ~1.3k | Automated safety check: Pass | MIT | today |
| 83 | Checks deps update in widely consumed repos will cause problems or not, and ranks dependency updates by downstream impact for prioritisation. | cultureamp/ | 176 | — | ~1.3k | Automated safety check: Pass | MIT | yesterday |
| 84 | A skill your agent uses for Dependabot PRs, dependency bumps, Gradle or Maven dependency updates, GitHub Actions updates, dependency changelog/licence/release-note review, JVM/classfile checks, and… | kernitus/ | 223 | — | ~882 | Automated safety check: Pass | MPL-2.0 | 3 days ago |
| 85 | A skill your agent uses when working on CI workflows, GitHub Actions, release process, changelog generation (git-cliff), or dependabot configuration. | kattouf/ | 116 | — | ~731 | Automated safety check: Pass | MIT | 6 mo ago |
| 86 | 86.Add Resolver Add a format-specific resolver to GitWand core. An agent skill from devlint/GitWand. | devlint/ | 180 | — | ~1.6k | Automated safety check: Pass | MIT | today |
| 87 | 87.Self Healing Active runtime recovery for coding agents: when something breaks mid-task, diagnose the root cause, write a fix, VERIFY by re-running the broken thing, then file a HEAL- entry to .learnings/HEALS.md… | pskoett/ | 310 | — | ~5.3k | Automated safety check: Notes | No licence | 2 days ago |
| 88 | Audits outdated npm and Bun packages for supply chain integrity before bumping them, deferring risky ones and logging every decision. | backnotprop/ | 9.2k | — | ~1.8k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 89 | Apply the changes from all open Renovate bot pull requests of a GitHub repository into the local working tree. | sivaprasadreddy/ | 187 | — | ~3k | Automated safety check: Pass | MIT | 2 days ago |
| 90 | Dependency management for Golang projects — go.mod and go.sum, go get install and upgrade flows, Minimal Version Selection, conflict resolution with replace/exclude/retract, govulncheck scanning of… | samber/ | 3.4k | — | ~2.6k | Automated safety check: Pass | MIT | 6 days ago |
| 91 | Gathers security findings from Dependabot, GCP container scanning, Docker Scout and Linear security issues, then triages and remediates them across Warp's repos and images. | warpdotdev/ | 65k | 1 repo | ~2.1k | Automated safety check: Pass | AGPL-3.0 | today |
| 92 | Bumps gh-aw's pinned gh-aw-firewall version, rebuilds generated artifacts, and flags upstream spec or schema changes that need follow-up work. | github/ | 5.3k | — | ~899 | Automated safety check: Pass | MIT | today |
| 93 | Secure dependency upgrades with supply chain protection, cooldowns, and staged rollout. | secondsky/ | 460 | — | ~4.8k | Automated safety check: Warn | GPL-3.0 | 2 days ago |
| 94 | A skill your agent uses when bumping any dependency, upgrading the HA test harness (pytest-homeassistant-custom-component) or HA floor, or handling Dependabot PRs/security alerts — per-package pin… | cognitivegears/ | 112 | — | ~1.1k | Automated safety check: Pass | MIT | yesterday |
| 95 | Batch all open Dependabot dependency upgrade PRs into a single PR | XRPLF/ | 133 | — | ~1.6k | Automated safety check: Pass | ISC | today |
| 96 | After a Dependabot bump of oss-crs-infra/dependabot-pins.Dockerfile, resolve the human-readable version tag for each updated digest, fix the inline comment, and sync the digest to… | ossf/ | 165 | — | ~1.7k | Automated safety check: Notes | MIT | yesterday |
Explore related skills
Category
More topics in Development
- Pull requests1,927
- Refactoring1,154
- Debugging1,154
- Changelog and release notes1,147
- Code review1,053
- Technical documentation998
- Linting and formatting830
- Git workflow809
- Diagrams801
- Project scaffolding742
- Root cause analysis610
- Code quality579
- Architecture decision records562
- Commit messages556
- Git worktrees528
- Performance optimization440
- Design patterns408
- Error handling317
- Type safety301
- Software architecture280
- Monorepo tooling267
- Async programming243
- Issue triage234
- Codebase onboarding232