Dependency Audit

Knowledge base for the evidence-first method: the per-ecosystem tool matrix, the obligations analysis model, and the verifiable signal catalog. TRIGGER WHEN: auditing dependencies for vulnerabilities, license obligations, outdated packages, or supply-chain risk in any ecosystem; loaded by the /dependency-audit:deps-audit command. DO NOT TRIGGER WHEN: dead-code or unused-dependency cleanup (use senior-review:code-review or typescript-development:knip), Python-only lint/type audits (use python-development:python-audit), or code-level security review (use senior-review:security-auditor).

acaprino 9d638e3 4 files · 16.9 KB Updated

File contents

acaprino/daodan/tree/main/plugins/dependency-audit/skills/dependency-audit commit 9d638e3cf0

Frequently asked questions

npx skillmds@latest add acaprino/dependency-audit