Topic · Development
Best dependency management skills, page 3
Dependency management skills, ranked
Ranked by score. Sort bymost stars,trending,newest,recently updated
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 97 | Workflow for updating gem dependencies and fixing CVEs in the ruby-git project: assess with bundle outdated and audit, edit the gemspec, test, then commit with conventional messages. | ruby-git/ | 1.8k | — | ~806 | Automated safety check: Pass | MIT | 6 days ago |
| 98 | Albucore image processing conventions - shapes (H,W,C), dtypes (uint8/float32), benchmark-driven backend routing (OpenCV, NumPy, Torch CPU, LUT, NumKong), tests, and lockfile discipline. | albumentations-team/ | 123 | — | ~1.6k | Automated safety check: Pass | MIT | 2 days ago |
| 99 | Process the oldest open pull request end-to-end: analyze the diff, add missing tests on that PR branch, resolve review comments (including Copilot) in a loop, fix test regressions, update… | itgalaxy/ | 309 | — | ~2.8k | Automated safety check: Notes | MIT | 2 days ago |
| 100 | 100.Python Packaging Package and publish Python libraries and CLI tools: project layout, pyproject.toml, build backends, wheels and source distributions, versioning and PyPI releases. | wshobson/ | 40k | 11 repos | ~911 | Automated safety check: Pass | MIT | 3 days ago |
| 101 | 101.Dependabot Merge Review and merge open dependency pull requests from Dependabot, Renovate and similar bots across the goreleaser organization and the caarlos0 user. | caarlos0/ | 220 | — | ~5k | Automated safety check: Pass | MIT | today |
| 102 | 102.Audit Deps Audit open dependabot PRs in this repo. An agent skill from garfiec/Librechat-Mobile. | garfiec/ | 110 | — | ~2.4k | Automated safety check: Notes | MIT | today |
| 103 | Sets up and maintains AzureML-ready Python projects as uv workspaces with devcontainers, a Makefile and job YAML, so local runs match cloud jobs and experiments stay reproducible. | Kilo-Org/ | 189 | — | ~3.1k | Automated safety check: Notes | MIT | 9 days ago |
| 104 | 104.Cve Doctor Triage a CVE / Dependabot alert in a JS/TS project and recommend the least-invasive fix. | getlago/ | 163 | — | ~2.9k | Automated safety check: Pass | MIT | today |
| 105 | Route code and dependency changes to relevant review dimensions based on affected files and folders. | microsoft/ | 969 | — | ~2k | Automated safety check: Pass | MIT | yesterday |
| 106 | Snapshot the computational environment for a replication package — detects the analysis stack (R / Stata / Python) and emits the right lockfiles (renv.lock + sessionInfo.txt, requirements.txt /… | pedrohcgs/ | 1.6k | — | ~2.8k | Automated safety check: Notes | MIT | 10 days ago |
| 107 | 107.Fix Security PR Fix a PR that is failing due to security or vulnerability issues — npm/pnpm/yarn/bun audit failures, CVE alerts, Dependabot merge conflicts, Snyk failures, or GitHub security advisory blocks. | unional/ | 133 | — | ~1.4k | Automated safety check: Warn | MIT | 3 days ago |
| 108 | Upgrades every package under ./examples to the repository's latest signals version, runs pub upgrade on third-party dependencies, and fixes the resulting analysis problems. | rodydavis/ | 819 | — | ~514 | Automated safety check: Pass | Apache-2.0 | 23 days ago |
| 109 | An extremely strict maintainability review for abstraction quality, giant files, and spaghetti-condition growth. | diyanbogdanov/ | 110 | — | ~1.9k | Automated safety check: Pass | MIT | yesterday |
| 110 | Quick reference for using Bun to run TypeScript and JavaScript, install packages, bundle code, run tests and serve HTTP, with the key files and commands. | mweinbach/ | 156 | — | ~2.2k | Automated safety check: Notes | Unknown | yesterday |
| 111 | Recreates every Flowfile development and build environment from scratch, with exact version pins and an explanation of what each Makefile target really does. | Edwardvaneechoud/ | 370 | — | ~7.3k | Automated safety check: Notes | MIT | yesterday |
| 112 | Add or manage third-party dependencies in a Polylith workspace. | DavidVujic/ | 553 | — | ~643 | Automated safety check: Pass | MIT | 3 days ago |
| 113 | Aligns a Lens extension's package.json ranges with the dependency versions bundled in the running Lens build, then reinstalls and rebuilds. | nevalla/ | 404 | — | ~709 | Automated safety check: Pass | MIT | yesterday |
| 114 | 114.Security Audit Audit SkiaSharp's native dependencies for security vulnerabilities and CVEs, including Component Governance (CG) alerts from the combined skiasharp-package Azure DevOps pipeline. | mono/ | 5.6k | — | ~5.7k | Automated safety check: Pass | MIT | today |
| 115 | 115.Veomni Uv Update A skill your agent uses when updating dependencies managed by uv: bumping a package version, upgrading the uv tool itself, updating torch/CUDA stack, switching transformers version, or regenerating… | ByteDance-Seed/ | 2.2k | — | ~2.1k | Automated safety check: Pass | Apache-2.0 | 7 days ago |
| 116 | A checklist for upgrading the pinned ONNX version and opset in ONNX Runtime, covering the files to change, archive hashes, patch rebasing and release-candidate handling. | microsoft/ | 22k | — | ~12k | Automated safety check: Pass | MIT | today |
| 117 | 117.Rust Hermetic Rust crate building, testing, and formatting via Bazel targets. | Moosync/ | 259 | — | ~665 | Automated safety check: Pass | GPL-3.0 | 6 days ago |
| 118 | Conventions for adding packages and apps to a TypeScript monorepo: project references, moon tasks, workspace dependencies and published package exports. | pierrecomputer/ | 6.2k | — | ~450 | Automated safety check: Pass | Apache-2.0 | yesterday |
| 119 | Explains how changes to the Flowfile monorepo are gated, versioned and released, including version sync, stub and docs drift checks, Alembic migrations and pinned dependencies. | Edwardvaneechoud/ | 370 | — | ~7.3k | Automated safety check: Pass | MIT | yesterday |
| 120 | Keep dependencies up-to-date. An agent skill from github/rust-gems. | github/ | 134 | — | ~2.7k | Automated safety check: Pass | MIT | yesterday |
| 121 | Scans a repository, its lockfiles and node_modules for known malicious npm package versions and install-time indicators, using a read-only Python scanner. | majiayu000/ | 286 | — | ~1.5k | Automated safety check: Pass | MIT | yesterday |
| 122 | Check dependencies for known vulnerabilities using npm audit, pip-audit, etc. | alirezarezvani/ | 777 | — | ~1.2k | Automated safety check: Notes | MIT | 3 mo ago |
| 123 | 123.Fix Vulns Automated triage and fixing of Dependabot security vulnerabilities (IN-1189). | linuxfoundation/ | 280 | — | ~3.8k | Automated safety check: Notes | MIT | 6 days ago |
| 124 | Guides Gradle 9 build changes in apache/grails-core on the 8.0.x line, favoring the repo's convention plugins, BOM platforms and patterns over generic Gradle advice. | apache/ | 2.9k | — | ~11k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 125 | Bumps an existing Python dependency in getsentry/sentry through the repository's self-serve GitHub Actions workflow. | getsentry/ | 45k | — | ~815 | Automated safety check: Pass | Unknown | today |
| 126 | 126.Dependabot Handle open dependabot PRs automatically. An agent skill from EmertonData/glide. | EmertonData/ | 119 | — | ~1.4k | Automated safety check: Pass | Unknown | yesterday |
| 127 | What a dependency migration must do before it is finished, regardless of how good the code is. | diyanbogdanov/ | 110 | — | ~542 | Automated safety check: Pass | AGPL-3.0 | yesterday |
| 128 | 128.Bun Workspaces Current Bun workspace guidance for isolated and hoisted linkers, catalogs, filters, scripts, dependency classes, lockfiles, lifecycle trust, caches, publishing, TypeScript package exports, and… | shepherdjerred/ | 112 | — | ~2.2k | Automated safety check: Pass | GPL-3.0 | today |
| 129 | Sets ground rules for a coding agent that edits its own Rust source: read the code and journal first, write tests first, commit small changes and check compilation after each file. | yologdev/ | 1.9k | — | ~1.9k | Automated safety check: Warn | MIT | today |
| 130 | Audits a project's dependencies for supply-chain risk: version-matched advisories for direct dependencies and the full lockfile tree, abandoned or archived upstreams, npm publisher concentration… | trailofbits/ | 7.4k | — | ~1.7k | Automated safety check: Notes | CC-BY-SA-4.0 | 5 days ago |
| 131 | Guide for safely updating project dependencies. An agent skill from microsoft/haste. | microsoft/ | 106 | — | ~551 | Automated safety check: Pass | MIT | 5 days ago |
| 132 | 132.Upgrade Notes Read the vendor's breaking changes, deprecations, migration notes and CVEs for every version between the one pinned now and the one being moved to, through the whatsnew MCP server's upgradenotes tool. | getknit/ | 130 | — | ~1.2k | Automated safety check: Pass | GPL-3.0 | 3 days ago |
| 133 | Checks that the tools and Python packages needed for a math modeling paper workflow are installed and offers platform-specific install commands for anything missing. | jihe520/ | 6.2k | — | ~1.5k | Automated safety check: Notes | No licence | 4 days ago |
| 134 | 134.npm Release A skill your agent uses when publishing or preparing to publish an npm package from this repository, especially the Skill Zoo CLI package under packages/cli. | luochang212/ | 115 | — | ~3.1k | Automated safety check: Warn | MIT | 5 days ago |
| 135 | Guides moving a Grails application from 7.x to Grails 8 and turns the official upgrade guide into a checklist of breaking changes. | apache/ | 2.9k | — | ~20k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 136 | Create batched Dependabot-style pull requests for GitHub security findings in axelixlabs/axelix, grouped by dependency surface such as master/front-end, master/build.gradle.kts, or starter Gradle… | axelixlabs/ | 147 | — | ~4.2k | Automated safety check: Pass | LGPL-3.0 | yesterday |
| 137 | A skill your agent uses when the user mentions a Dotty PR, dotty (package/dependency) updates, or asks to update the .NET agent compatibility docs / net-agent-compatibility-requirements after tested… | newrelic/ | 117 | — | ~2.1k | Automated safety check: Pass | Apache-2.0 | yesterday |
| 138 | 138.Stark Smoke Test Use after Phase 1 dependency updates are merged, before any Phase 2 propagation to sibling forks - runs the end-to-end devnet gate (up brings devnet/deploy/dev-server up, verify drives Chrome over… | Scaffold-Stark/ | 109 | — | ~3k | Automated safety check: Notes | No licence | 2 mo ago |
| 139 | Finds two or three well-maintained npm packages for a Front-End Checklist rule, checks download and release thresholds, and adds them to the rule's frontmatter. | thedaviddias/ | 74k | — | ~989 | Automated safety check: Pass | MIT | yesterday |
| 140 | 140.Mui Renovate Fix Fix a Renovate dependency-update PR with the minimal compatible code adaptation, extracting a dependency bump from a grouped PR only when the fix requires the new version. | mui/ | 106 | — | ~1.5k | Automated safety check: Pass | MIT | today |
| 141 | Conventions for .mjs files in the Handsontable monorepo: native node: imports, top-level await, the tasks.json dispatcher and native modules instead of extra dependencies. | handsontable/ | 22k | — | ~1.1k | Automated safety check: Pass | Unknown | today |
| 142 | Keeps Ansible install tasks in line with upstream docs by fixing version, install-method and link drift one tool at a time, with a commit for each. | vinta/ | 138 | — | ~1.4k | Automated safety check: Pass | MIT | 2 days ago |
| 143 | Moves a Node.js, npm, Yarn, pnpm or Bun project to Deno in reversible steps, starting with Deno as the package manager and changing no code unless needed. | denoland/ | 100 | — | ~2.2k | Automated safety check: Warn | MIT | 2 mo ago |
| 144 | Updates the biome package across a monorepo with pnpm, renames and realigns biome.jsonc schema versions, then runs lint fixes. | prisma/ | 48k | — | ~400 | Automated safety check: Pass | Apache-2.0 | yesterday |
Explore related skills
Category
More topics in Development
- Pull requests1,927
- Refactoring1,154
- Debugging1,154
- Changelog and release notes1,147
- Code review1,053
- Technical documentation998
- Linting and formatting830
- Git workflow809
- Diagrams801
- Project scaffolding742
- Root cause analysis610
- Code quality579
- Architecture decision records562
- Commit messages556
- Git worktrees528
- Performance optimization440
- Design patterns408
- Error handling317
- Type safety301
- Software architecture280
- Monorepo tooling267
- Async programming243
- Issue triage234
- Codebase onboarding232