agentsclimarketplace

Run1 skill 1

Skill cxcscmu/SkillLearnBench/skills/b3-teacher-feedback-gemini-3.1-pro-preview/dependency-vulnerability-check/run1_skill-1

[COLM'26] SkillLearnBench is the first benchmark for evaluating continual learning methods that automatically generate agent skills.From the repository description

Install
npx -y skills add cxcscmu/SkillLearnBench --skill run1_skill-1

Assembled from the repository path, not quoted from the project. Check it against their README if it does not work.

SKILL.md

0.7 KB, 144 tokens by cl100k_base, as published. Nobody here has run it

[SKILL]

name: package-lock-json-parser description: Parse package-lock.json (v2/v3) to extract all installed third-party dependencies and their exact versions. This is a critical first step for performing offline vulnerability scanning when standard network-based tools are unavailable.

When network access is restricted or strictly offline scanning is required, npm audit may fail. To perform a vulnerability audit against a local database, you first need to extract the installed packages and their versions directly from the package-lock.json file.

Modern package-lock.json files (lockfileVersion 2 and 3) store dependency information in the packages object.

Python Example: Extracting Dependencies

What ships with it

Read from the repository

Just SKILL.md. No reference files, no scripts.

Keep looking

Skills are one crate of 325,949. Ordering is by how many stacks a row turns up in, so the top of any crate is what has actually been picked rather than what has the most stars.