Skip to main content

supply-chain-sweep

Scan this machine for indicators of an npm/PyPI supply-chain compromise and produce a clear verdict report. Use whenever the user pastes or links a security advisory about compromised packages (Socket, Aikido, Snyk, Phylum posts, CVE writeups, "X package was hijacked" news) and wants to know if they are affected; whenever they ask "am I compromised", "check my device/laptop for that malware", "did the worm hit us", "are we exposed to the keyv/Shai-Hulud/xz-style attack"; and whenever they mention malicious package versions, credential-stealing postinstall/preinstall scripts, or ask to audit node_modules, lockfiles, or package caches against known-bad versions — even if they never use the words "scan" or "IOC".

インストールへ移動

ソース情報

リポジトリ
nibzard/supply-chain-sweep
ソースの最終更新活動
2026年8月4日 16:18
検出された SKILL.md の言語
英語
スター
0
フォーク
1

インストール方法

デフォルトでは、最初にソースを確認する Prompt が選択されています。直接コマンドに切り替えるか、ローカルコピーをダウンロードすることもできます。

ソースファイルを確認

インストールを決める前に、SKILL.md と SkillsMP に表示されている付属ファイルをお読みください。