Dependencies & supply chain
340 rows, by stacks then stars
157 of these skill files have been read, by 162 distinct authors, and what they tell an agent counted. What Dependencies & supply chain authors agree on, and what they forbid
Github actions cache poisoning
ShulkwiSEC/bb-huge/skills/curated/github-actions-cache-poisoning Skill
21★ repobb-huge 🤗 , Personal bug bounty findings hub and bug bounty orchestration for multiple agents
ShulkwiSEC/bb-huge/skills/curated/llm-supply-chain-poisoning Skill
21★ repobb-huge 🤗 , Personal bug bounty findings hub and bug bounty orchestration for multiple agents
Software supply chain failures
scholarly360/owasp-top10-web-skills/skills/software-supply-chain-failures Skill
20★ repoAgent Skills for OWASP Top 10 Application Security Risks (https://owasp.org/Top10/2025/)
krzysztofsurdy/code-virtuoso/skills/playbooks/composer-dependencies Skill
20★ repoSkills, sub-agents, and playbooks for Claude Code, Cursor, and any Agent Skills-compatible AI coding assistant.
Raishin/vanguard-frontier-agentic/skills/dotnet/dotnet-supply-chain-review Skill
20★ repoCurated marketplace of AI skills, agents, and rules for cloud, zero-trust, and compliance-aware engineering - works with Claude Code, Codex, Cursor, Copilot, and more.
Kotlin supply chain release integrity
Raishin/vanguard-frontier-agentic/skills/kotlin/kotlin-supply-chain-release-integrity Skill
20★ repoCurated marketplace of AI skills, agents, and rules for cloud, zero-trust, and compliance-aware engineering - works with Claude Code, Codex, Cursor, Copilot, and more.
Programmatic supply chain integrity review
Raishin/vanguard-frontier-agentic/skills/marketing/programmatic-supply-chain-integrity-review Skill
20★ repoCurated marketplace of AI skills, agents, and rules for cloud, zero-trust, and compliance-aware engineering - works with Claude Code, Codex, Cursor, Copilot, and more.
D365 supply chain plan to produce
Raishin/vanguard-frontier-agentic/skills/microsoft/d365-supply-chain-plan-to-produce Skill
20★ repoCurated marketplace of AI skills, agents, and rules for cloud, zero-trust, and compliance-aware engineering - works with Claude Code, Codex, Cursor, Copilot, and more.
Nvidia ngc nim supply chain governor
Raishin/vanguard-frontier-agentic/skills/nvidia/nvidia-ngc-nim-supply-chain-governor Skill
20★ repoCurated marketplace of AI skills, agents, and rules for cloud, zero-trust, and compliance-aware engineering - works with Claude Code, Codex, Cursor, Copilot, and more.
Composer audit supply chain review
Raishin/vanguard-frontier-agentic/skills/php/composer-audit-supply-chain-review Skill
20★ repoCurated marketplace of AI skills, agents, and rules for cloud, zero-trust, and compliance-aware engineering - works with Claude Code, Codex, Cursor, Copilot, and more.
Sap supply chain ibp resilience review
Raishin/vanguard-frontier-agentic/skills/sap/sap-supply-chain-ibp-resilience-review Skill
20★ repoCurated marketplace of AI skills, agents, and rules for cloud, zero-trust, and compliance-aware engineering - works with Claude Code, Codex, Cursor, Copilot, and more.
Sigstore cosign supply chain review
Raishin/vanguard-frontier-agentic/skills/sigstore/sigstore-cosign-supply-chain-review Skill
20★ repoCurated marketplace of AI skills, agents, and rules for cloud, zero-trust, and compliance-aware engineering - works with Claude Code, Codex, Cursor, Copilot, and more.
Liberty91LTD/cti-skills/skills/supply-chain-threats Skill
16★ repoCyber Threat Intelligence Skills for each stage of the CTI Lifecycle.
ShieldNet-360/secure-vibe/dist/agent-skills/.agents/skills/dependency-audit Skill
15★ repoSecureVibe — prevention-first security for AI-written code. Signed SKILL.md knowledge that makes AI coding assistants write secure code at generation time, plus a deterministic CI gate. Offline · keyless · Ed25519-signed. By ShieldNet360.
ShieldNet-360/secure-vibe/dist/agent-skills/.agents/skills/supply-chain-security Skill
15★ repoSecureVibe — prevention-first security for AI-written code. Signed SKILL.md knowledge that makes AI coding assistants write secure code at generation time, plus a deterministic CI gate. Offline · keyless · Ed25519-signed. By ShieldNet360.
ShieldNet-360/secure-vibe/dist/claude-skills/.claude/skills/dependency-audit Skill
15★ repoSecureVibe — prevention-first security for AI-written code. Signed SKILL.md knowledge that makes AI coding assistants write secure code at generation time, plus a deterministic CI gate. Offline · keyless · Ed25519-signed. By ShieldNet360.
ShieldNet-360/secure-vibe/dist/claude-skills/.claude/skills/supply-chain-security Skill
15★ repoSecureVibe — prevention-first security for AI-written code. Signed SKILL.md knowledge that makes AI coding assistants write secure code at generation time, plus a deterministic CI gate. Offline · keyless · Ed25519-signed. By ShieldNet360.
ShieldNet-360/secure-vibe/dist/copilot-skills/.github/skills/dependency-audit Skill
15★ repoSecureVibe — prevention-first security for AI-written code. Signed SKILL.md knowledge that makes AI coding assistants write secure code at generation time, plus a deterministic CI gate. Offline · keyless · Ed25519-signed. By ShieldNet360.
ShieldNet-360/secure-vibe/dist/copilot-skills/.github/skills/supply-chain-security Skill
15★ repoSecureVibe — prevention-first security for AI-written code. Signed SKILL.md knowledge that makes AI coding assistants write secure code at generation time, plus a deterministic CI gate. Offline · keyless · Ed25519-signed. By ShieldNet360.
ShieldNet-360/secure-vibe/skills/dependency-audit Skill
15★ repoSecureVibe — prevention-first security for AI-written code. Signed SKILL.md knowledge that makes AI coding assistants write secure code at generation time, plus a deterministic CI gate. Offline · keyless · Ed25519-signed. By ShieldNet360.
ShieldNet-360/secure-vibe/skills/supply-chain-security Skill
15★ repoSecureVibe — prevention-first security for AI-written code. Signed SKILL.md knowledge that makes AI coding assistants write secure code at generation time, plus a deterministic CI gate. Offline · keyless · Ed25519-signed. By ShieldNet360.
backspace-shmackspace/claude-devkit/skills/dependency-audit Skill
15★ repoclaude-devkit - an agentic coding framework
Teycir/SkillsGuard/testskills/realworld/skills/malicious-supply-chain-11 Skill
no license15★ repoStatic security scanner for AI agent skill packages. Detects malicious SKILL.md files and bundled scripts before they run.
Teycir/SkillsGuard/testskills/realworld/skills/malicious-supply-chain-5 Skill
no license15★ repoStatic security scanner for AI agent skill packages. Detects malicious SKILL.md files and bundled scripts before they run.
Teycir/SkillsGuard/testskills/supply-chain-skill Skill
no license15★ repoStatic security scanner for AI agent skill packages. Detects malicious SKILL.md files and bundled scripts before they run.
Coff0xc/coffee-skill/skills/coff0xc-cloud-devsecops Skill
no license15★ repoInstallable Codex/AgentSkills workflow pack for dev, Agent/RAG, API/data, Office artifacts, research diagrams, and authorized security review.
jackchuka/skills/gh-dep-pr-triage Skill
15★ repoA lazy engineer's toolkit — why do it yourself when a Skill can?
Infra kubernetes security audit
ivanshamaev/de-agent-skills/group_skills/infra_dataops_group_skills/infra_kubernetes_security_audit Skill
no license15★ repoПрофессиональные Data Engineering Agent Skills для разработки AI Agentic Data Platform
Z-M-Huang/vcp/plugins/vcp/skills/vcp-dependency-check Skill
14★ repoVibe Coding Protocal - Security-first protocol for AI-generated code, multiple standards with real-time enforcement and multi-AI pipeline orchestration
onfire7777/universal-ai-skills-library/skills/supply-chain-risk-auditor Skill
14★ repoRouter-first AI skill system for Codex, Claude, Cursor, Hermes, Paperclip, OpenCode, and local AI stacks: search, preflight-route, and load 1,812 skills on demand without duplicating the corpus.
FridrichMethod/awesome-skills/skills/supply-chain-hardening Skill
no license13★ repoCurated, auto-synced collection of 2,000+ Claude Code & Codex skills for AI4Protein, bioinformatics, AI development, and academic paper writing. One curl command installs them all.
martinholovsky/SOTA-skills/skills/sota-devsecops Skill
12★ repoState-of-the-Art (2026) AI/LLM engineering skills/agents for building and auditing software — 40+ domain & language skills, BUILD/AUDIT modes, audit checklists.
tinh2/skills-hub-registry/analysis/defense-supply-chain Skill
no license12★ repoOpen registry of community-contributed AI coding skills (SKILL.md files) — daily-synced to skills-hub.ai. Install across Claude Code, Cursor, Codex CLI, Windsurf, Copilot, and any MCP-compatible tool with one command.
tinh2/skills-hub-registry/analysis/supply-chain-risk Skill
no license12★ repoOpen registry of community-contributed AI coding skills (SKILL.md files) — daily-synced to skills-hub.ai. Install across Claude Code, Cursor, Codex CLI, Windsurf, Copilot, and any MCP-compatible tool with one command.
tinh2/skills-hub-registry/security/check-vanta Skill
no license12★ repoOpen registry of community-contributed AI coding skills (SKILL.md files) — daily-synced to skills-hub.ai. Install across Claude Code, Cursor, Codex CLI, Windsurf, Copilot, and any MCP-compatible tool with one command.
tinh2/skills-hub-registry/security/dependency-scan Skill
no license12★ repoOpen registry of community-contributed AI coding skills (SKILL.md files) — daily-synced to skills-hub.ai. Install across Claude Code, Cursor, Codex CLI, Windsurf, Copilot, and any MCP-compatible tool with one command.
G1Joshi/Agent-Skills/skills/security/dependabot Skill
12★ repoA comprehensive skill catalog for AI agents
G1Joshi/Agent-Skills/skills/security/renovate Skill
12★ repoA comprehensive skill catalog for AI agents
wonsukchoi/domain-experts/roles/supply-chain-manager Skill
12★ repoall human experts into AI agents
Analyzing sbom for supply chain vulnerabilities
Mikaru0Mystic/sectinel/arsenal/Anthropic-Cybersecurity-Skills/skills/analyzing-sbom-for-supply-chain-vulnerabilities Skill
11★ repoOpen-source security arsenal for AI coding agents: 784 cybersecurity skills, scanner integrations, and a security MCP for Claude Code, Cursor, opencode, Gemini CLI, Cline, and any agentskills.io agent. Mapped to OWASP, MITRE ATT&CK, NIST CSF, D3FEND, ATLAS.
Analyzing supply chain malware artifacts
Mikaru0Mystic/sectinel/arsenal/Anthropic-Cybersecurity-Skills/skills/analyzing-supply-chain-malware-artifacts Skill
11★ repoOpen-source security arsenal for AI coding agents: 784 cybersecurity skills, scanner integrations, and a security MCP for Claude Code, Cursor, opencode, Gemini CLI, Cline, and any agentskills.io agent. Mapped to OWASP, MITRE ATT&CK, NIST CSF, D3FEND, ATLAS.
Detecting supply chain attacks in ci cd
Mikaru0Mystic/sectinel/arsenal/Anthropic-Cybersecurity-Skills/skills/detecting-supply-chain-attacks-in-ci-cd Skill
11★ repoOpen-source security arsenal for AI coding agents: 784 cybersecurity skills, scanner integrations, and a security MCP for Claude Code, Cursor, opencode, Gemini CLI, Cline, and any agentskills.io agent. Mapped to OWASP, MITRE ATT&CK, NIST CSF, D3FEND, ATLAS.
Hunting for supply chain compromise
Mikaru0Mystic/sectinel/arsenal/Anthropic-Cybersecurity-Skills/skills/hunting-for-supply-chain-compromise Skill
11★ repoOpen-source security arsenal for AI coding agents: 784 cybersecurity skills, scanner integrations, and a security MCP for Claude Code, Cursor, opencode, Gemini CLI, Cline, and any agentskills.io agent. Mapped to OWASP, MITRE ATT&CK, NIST CSF, D3FEND, ATLAS.
Implementing supply chain security with in toto
Mikaru0Mystic/sectinel/arsenal/Anthropic-Cybersecurity-Skills/skills/implementing-supply-chain-security-with-in-toto Skill
11★ repoOpen-source security arsenal for AI coding agents: 784 cybersecurity skills, scanner integrations, and a security MCP for Claude Code, Cursor, opencode, Gemini CLI, Cline, and any agentskills.io agent. Mapped to OWASP, MITRE ATT&CK, NIST CSF, D3FEND, ATLAS.
Performing supply chain attack simulation
Mikaru0Mystic/sectinel/arsenal/Anthropic-Cybersecurity-Skills/skills/performing-supply-chain-attack-simulation Skill
11★ repoOpen-source security arsenal for AI coding agents: 784 cybersecurity skills, scanner integrations, and a security MCP for Claude Code, Cursor, opencode, Gemini CLI, Cline, and any agentskills.io agent. Mapped to OWASP, MITRE ATT&CK, NIST CSF, D3FEND, ATLAS.
Mikaru0Mystic/sectinel/arsenal/cybersecurity-skills/skills/dependency-audit Skill
11★ repoOpen-source security arsenal for AI coding agents: 784 cybersecurity skills, scanner integrations, and a security MCP for Claude Code, Cursor, opencode, Gemini CLI, Cline, and any agentskills.io agent. Mapped to OWASP, MITRE ATT&CK, NIST CSF, D3FEND, ATLAS.
alexastrum/skl/.agents/skills/golang-continuous-integration Skill
11★ repoA lightweight, single-binary Agent Skills CLI manager written in Go
alexastrum/skl/.agents/skills/golang-dependency-management Skill
11★ repoA lightweight, single-binary Agent Skills CLI manager written in Go
HetCreep/CoalMine/plugin/skills/supply-chain-audit Skill
11★ repoNine quality-canary skills for AI coding agents - code health, world-class rule completeness, grounding, supply chain, resilience, drift & more - plus the auto-cadence hooks that run them unprompted at session start and session end. Cross-agent, consent-gated, token-lean.
HetCreep/CoalMine/skills/supply-chain-audit Skill
11★ repoNine quality-canary skills for AI coding agents - code health, world-class rule completeness, grounding, supply chain, resilience, drift & more - plus the auto-cadence hooks that run them unprompted at session start and session end. Cross-agent, consent-gated, token-lean.
Security scanning security dependencies
sinhoneyy/master-skills/plugins/master-skills-security-engineer/skills/security-scanning-security-dependencies Skill
no license10★ repoUnified skill library for Claude, Codex, Cursor, Antigravity & AI agents — 2,658 skills across 15 domains
sinhoneyy/master-skills/plugins/master-skills-security-engineer/skills/supply-chain-risk-auditor Skill
no license10★ repoUnified skill library for Claude, Codex, Cursor, Antigravity & AI agents — 2,658 skills across 15 domains
Security scanning security dependencies
sinhoneyy/master-skills/skills/security-scanning-security-dependencies Skill
no license10★ repoUnified skill library for Claude, Codex, Cursor, Antigravity & AI agents — 2,658 skills across 15 domains
sinhoneyy/master-skills/skills/supply-chain-risk-auditor Skill
no license10★ repoUnified skill library for Claude, Codex, Cursor, Antigravity & AI agents — 2,658 skills across 15 domains
Securing software supply chain
casioreview20-glitch/forge-os/skills-v2/l1/security/securing-software-supply-chain Skill
10★ repoThe open-source control plane for AI agents — skill routing, context governance, trustworthy execution, evidence, security, and multi-agent orchestration.
Securing software supply chain
casioreview20-glitch/forge-os/skills/core/security/securing-software-supply-chain Skill
10★ repoThe open-source control plane for AI agents — skill routing, context governance, trustworthy execution, evidence, security, and multi-agent orchestration.
rlespinasse/agent-skills/skills/pin-github-actions Skill
10★ repoA collection of Agent Skills for AI coding assistants (Claude, Cursor, Copilot). Following agentskills.io specification.
Analyzing supply chain malware artifacts
autohandai/community-skills/analyzing-supply-chain-malware-artifacts Skill
10★ repoA collection of curated, useful, and safe skills for Autohand Code CLI Agent
Detecting supply chain attacks in ci cd
autohandai/community-skills/detecting-supply-chain-attacks-in-ci-cd Skill
10★ repoA collection of curated, useful, and safe skills for Autohand Code CLI Agent
Hunting for supply chain compromise
autohandai/community-skills/hunting-for-supply-chain-compromise Skill
10★ repoA collection of curated, useful, and safe skills for Autohand Code CLI Agent