Skip to main content

secure-dependencies

Sterne16
Forks2
Aktualisiert20. Mai 2026 um 12:50

Use this skill for any task involving dependency security: evaluating potential new dependencies before adding them, updating existing dependencies safely, or auditing the health and license status of current dependencies. Triggered by phrases like: - "update dependencies", "bundle update", "upgrade X" - "apply Dependabot alerts" - "add dependency X", "should I use X", "evaluate X", "is X safe to add" - "audit our dependencies", "are our deps healthy", "check our licenses", "review what we're using", "how maintained are our gems" - "securely update", "check for vulnerabilities in our dependencies" This skill guards against both unintentional vulnerabilities (insecure defaults, unmaintained projects, licensing problems that predict long-term security abandonment) and supply chain attacks (typosquatting, slopsquatting, package maintainer account takeovers, and malicious package developers)

Installation

Mit Codex oder Claude installieren Kopieren Sie diesen Prompt, fügen Sie ihn in Codex, Claude oder einen anderen Assistant ein und lassen Sie die Skill-Seite prüfen und installieren.

SKILL.md
readonly