Topic · Development
Best dependency management skills, page 4
Dependency management skills, ranked
Ranked by score. Sort bymost stars,trending,newest,recently updated
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 145 | Updates the biome package across a monorepo with pnpm, renames and realigns biome.jsonc schema versions, then runs lint fixes. | prisma/ | 48k | — | ~400 | Automated safety check: Pass | Apache-2.0 | today |
| 146 | Upgrade pnpm workspace dependencies to target/latest versions: direct/transitive bumps, release-age checks, temporary overrides, minimumReleaseAgeExclude, lockfile/dedupe verification. | langfuse/ | 36k | — | ~1.3k | Automated safety check: Pass | Unknown | today |
| 147 | Guides a consistent bump of the Android or iOS SDK wrapped by the AppsFlyer Unity plugin, keeping both billing library variants and release files in step. | AppsFlyerSDK/ | 178 | — | ~789 | Automated safety check: Pass | MIT | 3 days ago |
| 148 | Installs, configures, upgrades and removes KubeSphere extensions through Extension, ExtensionVersion and InstallPlan resources, including dependencies and versions. | kubesphere/ | 17k | — | ~2.8k | Automated safety check: Pass | Unknown | 2 mo ago |
| 149 | Fix open Dependabot and CodeQL/code-scanning alerts directly on the current branch. | cloudposse/ | 1.4k | — | ~1.3k | Automated safety check: Pass | Apache-2.0 | today |
| 150 | Cut GitHub Actions minutes and wall-clock time without losing coverage — the OS billing multiplier (macOS 10x / Windows 2x / Linux 1x), trigger hygiene that stops push+pullrequest double-firing… | kajisho5/ | 1.9k | — | ~3.3k | Automated safety check: Notes | MIT | 3 days ago |
| 151 | 151.Dependabot Find all open Dependabot alerts for this repo and create a plan to resolve them using the appropriate package manager overrides (pnpm, bun, npm, cargo). | macro-inc/ | 4.6k | — | ~747 | Automated safety check: Notes | AGPL-3.0 | today |
| 152 | Extracts and validates semantic version strings from mixed text, parsing major, minor, patch, prerelease and build components with a fixed regular expression. | maslennikov-ig/ | 260 | — | ~1k | Automated safety check: Pass | Unknown | 7 mo ago |
| 153 | Manage third-party libraries, runtimes, and SaaS dependencies. | rampstackco/ | 940 | — | ~2.8k | Automated safety check: Pass | MIT | yesterday |
| 154 | Pushes the agent toward the smallest working solution on coding tasks by climbing a ladder from skipping the work to reuse, standard library, native features and one-liners. | diegosouzapw/ | 74k | — | ~1.9k | Automated safety check: Pass | MIT | today |
| 155 | Sets up Python projects with uv for packages and environments, ruff for linting and formatting, and pyright for type checking, with rules for running everything through uv. | XiaomiMiMo/ | 14k | — | ~1.5k | Automated safety check: Notes | MIT | 4 days ago |
| 156 | Sweep the open dependency-bot pull requests once - rebase the stale ones, re-trigger infrastructure failures, and merge the green patch and minor updates. | partcad/ | 503 | — | ~1.9k | Automated safety check: Pass | Apache-2.0 | today |
| 157 | 157.Updating Deps Update Python dependencies using UV. An agent skill from letsrevel/revel-backend. | letsrevel/ | 109 | — | ~746 | Automated safety check: Pass | MIT | yesterday |
| 158 | 158.Cb Automation The maintenance automation around Circuit Breaker — which bots and scheduled workflows exist (Discord notifications, ledger watch, branch cleanup, Dependabot lockfile sync, the required-checks… | BlkLeg/ | 201 | — | ~2.4k | Automated safety check: Pass | MIT | 2 days ago |
| 159 | Fix a Dependabot PR by updating all monorepo instances of the dependency, running bun install, and pushing | remotion-dev/ | 62k | — | ~509 | Automated safety check: Pass | Unknown | today |
| 160 | Scans package manifests and lockfiles for outdated packages and known CVEs, then classifies each possible update as patch, minor, major or escalate-human for a dependency sweeper loop. | cobusgreyling/ | 11k | — | ~300 | Automated safety check: Pass | MIT | today |
| 161 | 161.Apm Usage Reference for APM (Agent Package Manager) — apm.yml syntax, install / uninstall / update commands, target detection, lockfile workflow. | mizchi/ | 356 | — | ~1.9k | Automated safety check: Pass | No licence | 6 days ago |
| 162 | 162.Dep Security Check every dependency in a package.json against live CVE databases and security advisories in real time — specifically targeting vulnerabilities disclosed in the last 48 hours, the window that… | tinyfish-io/ | 2.2k | — | ~2.4k | Automated safety check: Pass | MIT | 6 days ago |
| 163 | 163.Ghost Scan Deps Ghost Security - Software Composition Analysis (SCA) scanner. | ghostsecurity/ | 408 | — | ~1.3k | Automated safety check: Notes | Apache-2.0 | 9 days ago |
| 164 | Dependabot and security analysis skill for HASTE. An agent skill from microsoft/haste. | microsoft/ | 107 | — | ~1k | Automated safety check: Pass | MIT | today |
| 165 | Supply-chain security controls for the @cipherstash/stack monorepo. | cipherstash/ | 157 | — | ~5.2k | Automated safety check: Warn | MIT | today |
| 166 | Combine several open Dependabot pull requests into a single branch and PR: enumerate the open Dependabot PRs, cherry-pick them onto fresh main, rewrite commit messages to satisfy… | sillsdev/ | 110 | — | ~3.5k | Automated safety check: Pass | Unknown | today |
| 167 | Refreshes the code of installed NanoClaw channel and provider skills from their registry branches, with fork-aware remotes and a result that must be fully successful. | nanocoai/ | 31k | — | ~786 | Automated safety check: Notes | MIT | yesterday |
| 168 | 168.Update Deps Audit all outdated dependencies with detailed research on changelogs, breaking changes, bug fixes, and deprecations. | viclafouch/ | 110 | — | ~2.6k | Automated safety check: Pass | No licence | 6 mo ago |
| 169 | Local Cargo documentation reference (latest). An agent skill from olorehq/olore. | olorehq/ | 104 | — | ~753 | Automated safety check: Pass | MIT | today |
| 170 | Guides your agent through Bazel for C/C++ projects: BUILD files, Bzlmod dependencies, toolchain registration, remote execution, dependency queries and sandbox debugging. | mohitmishra786/ | 253 | — | ~1.5k | Automated safety check: Pass | MIT | 3 mo ago |
| 171 | Coordinates work across several GitHub repositories: swarm-driven cross-repo operations, package version and documentation sync, and repository structure optimization. | ruvnet/ | 816 | 5 repos | ~5.6k | Automated safety check: Pass | No licence | 22 days ago |
| 172 | A skill your agent uses when managing Maven dependencies, resolving dependency conflicts, configuring BOMs, or optimizing dependency trees in Java projects. | TheBushidoCollective/ | 198 | 1 repo | ~3.1k | Automated safety check: Notes | Unknown | 1 mo ago |
| 173 | Update eslint-plugin-es-x Node.js support in its own dedicated PR. | eslint-community/ | 157 | — | ~980 | Automated safety check: Pass | MIT | 12 days ago |
| 174 | Sets up Python projects and standalone scripts with uv, ruff, ty, pytest and prek, and helps move existing projects off pip, Poetry, mypy and black. | trailofbits/ | 7.4k | — | ~2.5k | Automated safety check: Pass | CC-BY-SA-4.0 | today |
| 175 | Perform a broad Node/TypeScript repository health sweep — formatting, linting, type errors, dead code, dependency hygiene, and open Renovate PRs. | commercetools/ | 154 | — | ~3k | Automated safety check: Notes | MIT | 5 days ago |
| 176 | Check whether newer stable versions of Node.js (24.x line), Nx, or Vite are available and, if so, generate a detailed upgrade plan markdown file at the repo root. | PackmindHub/ | 317 | — | ~2.2k | Automated safety check: Pass | Apache-2.0 | today |
| 177 | Sequences safe dependency upgrades: read the changelog, verify the version exists upstream, pin it, and keep major bumps in separate commits behind a full gate run. | dralgorhythm/ | 125 | — | ~1.5k | Automated safety check: Pass | No licence | 2 mo ago |
| 178 | 178.Absolute Upgrade Dependency upgrades: outdated/vulnerable deps planned into semver waves (patch/minor batched, majors gated and changelog-read), applied incrementally with lockfiles regenerated and tests green after… | maddhruv/ | 218 | 1 repo | ~1.1k | Automated safety check: Pass | MIT | 3 mo ago |
| 179 | Guides adding support for a new language, package manager, or lockfile format to cdxgen, covering alias registration, parser placement, the create-Lang-Bom dispatch branch, purl construction… | cdxgen/ | 1.1k | — | ~1.1k | Automated safety check: Pass | Apache-2.0 | today |
| 180 | Respond to blocked package installs and manage the Interlinked supply-chain allowlist. | QuentinCody/ | 178 | — | ~2.8k | Automated safety check: Pass | MIT | 5 days ago |
| 181 | 181.Uv Workflow Master uv package manager for Python: project setup, dependency management, virtual environments, lockfiles, CI/CD integration, Docker builds, and migration from pip/poetry. | Aedelon/ | 120 | — | ~1.2k | Automated safety check: Notes | Unknown | 7 mo ago |
| 182 | GitHub repository automation (CI/CD, issue templates, Dependabot, CodeQL). | secondsky/ | 227 | — | ~4k | Automated safety check: Notes | MIT | 9 days ago |
| 183 | A skill your agent uses when designing multi-app Frappe architectures, deciding whether to split functionality into separate apps, or implementing cross-app communication patterns. | Impertio-Studio/ | 187 | — | ~2.8k | Automated safety check: Pass | MIT | 20 days ago |
| 184 | 184.Cve Scan Scans deps for known CVEs via native audit (npm, pip, composer, cargo, go, bundler, dart). | softspark/ | 179 | — | ~1.3k | Automated safety check: Notes | Apache-2.0 | yesterday |
| 185 | Comprehensive guide for configuring and managing GitHub Dependabot. | github/ | 40k | 1 repo | ~3.4k | Automated safety check: Pass | MIT | today |
| 186 | Diagnose and unblock failed Dependabot pull requests in cloud-provider-azure by closing Kubernetes minor-version dependency bumps, classifying CI failures, syncing Go modules, retesting quota-flaked… | kubernetes-sigs/ | 294 | — | ~1.5k | Automated safety check: Pass | Apache-2.0 | today |
| 187 | Read release notes/changelogs, update a defined dependency scope, handle breaking changes, and verify. | codewhale-hq/ | 41k | — | ~142 | Automated safety check: Pass | MIT | today |
| 188 | Scan package manifests and lockfiles for outdated and vulnerable dependencies. | cobusgreyling/ | 11k | — | ~206 | Automated safety check: Pass | MIT | today |
| 189 | 189.Golang Security Security best practices and vulnerability prevention for Golang — injection (SQL, command, XSS), cryptography, path traversal, SSRF and HTTP security headers, cookies, secrets management, memory… | unxed/ | 241 | 2 repos | ~3.6k | Automated safety check: Pass | MIT | today |
| 190 | Configures GitHub Advanced Security (code scanning with CodeQL, secret scanning, dependency review, and Dependabot alerts) to perform automated static analysis and vulnerability detection across… | mukul975/ | 34k | — | ~2.3k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 191 | Reviews Dependabot gem upgrade PRs for breaking changes, codebase impact, and merge readiness. | ThibautBaissac/ | 665 | — | ~3.9k | Automated safety check: Notes | MIT | 4 mo ago |
| 192 | Golang dependency management — go.mod, installing/upgrading packages, Minimal Version Selection, vulnerability scanning, binary size, Dependabot/Renovate, conflict resolution, go.work. | context-labs/ | 1.1k | — | ~2.4k | Automated safety check: Pass | MIT | 3 days ago |
Explore related skills
Category
More topics in Development
- Pull requests1,950
- Debugging1,176
- Changelog and release notes1,167
- Refactoring1,139
- Code review1,044
- Technical documentation1,012
- Linting and formatting856
- Git workflow811
- Diagrams798
- Project scaffolding747
- Root cause analysis608
- Code quality599
- Commit messages560
- Architecture decision records556
- Git worktrees538
- Performance optimization446
- Design patterns392
- Type safety296
- Software architecture287
- Monorepo tooling266
- Error handling256
- Async programming255
- Issue triage234
- Codebase onboarding228