Skip to main content
在 Manus 中运行任何 Skill
一键导入

vulnerability-report-triage

星标3
分支0
更新时间2026年7月10日 07:07

Triage reported vulnerabilities in a project's dependencies (Dependabot, GitHub Advisory, or an in-house weekly security report) for SOC2/compliance deadlines. Detects the tech stack, classifies each item by production-vs-development impact and direct-vs-transitive placement, judges whether it actually applies to this codebase, rates upgrade effort, scores confidence, and emits ready-to-use handoff artifacts (dismissal rationale, task/PR descriptions). Use when the user pastes a Dependabot/Revisor vulnerability report, shares a CVE/GHSA to assess against a project, shares a Slack channel/message link where a report was posted, asks to triage security alerts, or mentions /security-check:vulnerability-report-triage. Produces a report only — makes no repo changes. Not Cowork-ready — needs local package managers, `gh`, and registry/advisory egress.

安装

用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。

文件资源管理器
2 个文件
SKILL.md
readonly