dependency-auditor
Runs each supported ecosystem's native audit tool (npm audit, pip-audit, cargo audit, govulncheck) to detect vulnerabilities and helps triage findings into a prioritized remediation plan without fabricating CVE data. The plugin provides a /audit-deps command and a reusable dependency-audit skill, plus a read-only subagent that isolates verbose tool output and applies severity/reachability-based triage.
Install
Source: https://github.com/matthews-wong/claude-code-plugins/tree/HEAD/plugins/dependency-auditor
What it's made of
1 command · 1 agent · 1 skill
- Commands
- 1
- Agents
- 1
- Skills
- 1
- MCP servers
- 0
- Hooks
- 0
What it needs & plugs into
- API keys
- none
- Paid services
- none detected
- External tools
- none
- Talks to
- nothing external detected
Analyzed . Facts extracted from the plugin's files. Prose generated by claude-haiku-4-5-20251001.
Is this your plugin?
Claim it to keep the card accurate and enter the weekly contest. Requires signing in as the GitHub owner (matthews-wong).