Skip to main content
在 Manus 中运行任何 Skill
一键导入

dependabot-security-fix

星标7
分支1
更新时间2026年7月17日 14:52

Root-causes and genuinely fixes GitHub Dependabot security alerts in Gradle/JVM projects (Android, Kotlin, Java) — not by dismissing them, but by tracing WHY the vulnerable version is still resolving and forcing a real fix. Use this whenever the user mentions Dependabot alerts, GitHub security warnings, "N vulnerabilities" on a repo, CVEs in dependencies, the GitHub security tab, dependency-graph/SBOM weirdness, or asks why alerts "won't close" / "won't refresh" / "won't auto-dismiss" even though a version bump was already made. Also use it when a fix was already attempted (e.g. a buildscript or version-catalog pin) but alerts remain open — that's the classic symptom this skill is built to diagnose.

安装

用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。

文件资源管理器
4 个文件
SKILL.md
readonly