supply-chain-security

Checks software dependencies and build pipelines for hidden risks so teams know their code is safe.

Installation
Run `npx skills add "https://github.com/zhaoxuya520/reverse-skill" --skill "supply-chain-security"` to install this skill, then follow its SKILL.md instructions for my next request.

Paste this into Claude Code, Cursor, or any agent that can run commands.

What this skill does
What it does: - Scans software projects for known vulnerabilities in open source libraries - Creates a list of all software parts and their sources - Checks if build pipelines are secure and if code is signed - Tests container images for security problems - Verifies that third party code is safe and from trusted sources When to use it: - Before releasing software to check for dangerous libraries - To find out what open source code your project uses - To verify that your build process is secure - To check if container images have known security holes - To make sure third party code has not been tampered with

The full skill text could not be loaded right now. It installs fine with the command above, or read it at the source.

Mirrored from the author's public source. Install counts from the open skills registry.

The systems behind these skills get built for partners every week.

Partner with us