Skip to main content
alexandre-daubois
GitHub 제작자 프로필

alexandre-daubois

2개 GitHub 저장소에서 수집된 26개 skills를 저장소 단위로 보여줍니다.

수집된 skills
26
저장소
2
업데이트
2026년 6월 1일
저장소 탐색

저장소와 대표 skills

maintainers
정보 보안 분석가

Identify the real maintainers of a repository and the best way to contact them about a security issue. Distinguishes active leads from occasional contributors and bots, using commit history, issue activity, and registry ownership. Use when preparing a…

2026년 6월 1일
dependencies
소프트웨어 개발자

Index dependencies reported by git-pkgs for the repository's manifest and lockfile files (package.json, Gemfile, go.mod, requirements.txt, etc.) and record each one with its manifest path, ecosystem, and requirement string. Use to populate the Dependencies…

2026년 5월 31일
reachability
정보 보안 분석가

Check whether known sinks in this application's dependencies are reachable from its own trust boundaries. Scrutineer already holds findings against the libraries this app uses; this skill traces each one from the app's entry points to the library call and…

2026년 5월 31일
sbom
소프트웨어 개발자

Generate a CycloneDX Software Bill of Materials for the repository. Use when you want a standard-format inventory of components for downstream tooling, compliance, or archival. Stored verbatim on the scan.

2026년 5월 31일
advisories
소프트웨어 개발자

Fetch the published security advisories that affect any package produced by this repository. Use to populate the Advisories tab with existing GHSA and CVE records so analysts can see what is already public before triaging new findings.

2026년 5월 26일
dependents
소프트웨어 개발자

For each published package of this repository, fetch the top runtime dependents so later exposure-analysis skills have a ranked shortlist to work against. Use after the packages skill has populated which packages exist.

2026년 5월 26일
exposure
소프트웨어 개발자

For one (finding, dependent) pair, decide whether the dependent's published code actually reaches the upstream library finding. Emit one CSAF 2.0 product_status verdict so scrutineer can record affected vs not_affected and stamp the right VEX justification.

2026년 5월 26일
fork
정보 보안 분석가

Fork the scanned repository into the configured GitHub organisation, enable private vulnerability reporting on the fork, record the scan as a git note, and file each finding as a draft security advisory on the fork with a relevant org team invited as…

2026년 5월 26일
수집된 skill 22개 중 8개를 표시합니다.
저장소 2개 중 2개 표시
모든 저장소를 표시했습니다