PlugMyPlugin
← Browse

dependency-auditor

matthews-wong ★ 2

Runs each supported ecosystem's native audit tool (npm audit, pip-audit, cargo audit, govulncheck) to detect vulnerabilities and helps triage findings into a prioritized remediation plan without fabricating CVE data. The plugin provides a /audit-deps command and a reusable dependency-audit skill, plus a read-only subagent that isolates verbose tool output and applies severity/reachability-based triage.

Security DevOps No API key detected prompt pack

Install

> /plugin marketplace add matthews-wong/claude-code-plugins/tree/HEAD/plugins/dependency-auditor
> /plugin install dependency-auditor

Source: https://github.com/matthews-wong/claude-code-plugins/tree/HEAD/plugins/dependency-auditor

What it's made of

1 command · 1 agent · 1 skill

Commands
1
Agents
1
Skills
1
MCP servers
0
Hooks
0

What it needs & plugs into

API keys
none
Paid services
none detected
External tools
none
Talks to
nothing external detected

Analyzed . Facts extracted from the plugin's files. Prose generated by claude-haiku-4-5-20251001.

Is this your plugin?

Claim it to keep the card accurate and enter the weekly contest. Requires signing in as the GitHub owner (matthews-wong).