npm Dependency Audit Scanner

Scans Node.js projects for vulnerable dependencies using npm audit and the OSV.dev REST API. Cross-references CVE databases via the National Vulnerability Database API v2.0 and generates SBOM documents in CycloneDX format.

agentskillexchange Updated 28 repo stars

File contents

npm Dependency Audit Scanner

Scans Node.js projects for vulnerable dependencies using npm audit and the OSV.dev REST API. Cross-references CVE databases via the National Vulnerability Database API v2.0 and generates SBOM documents in CycloneDX format.

Installation

Use the upstream install or setup path that matches your environment:

  • npm Docs
  • npm package scope, access level, and visibility
  • Docker and private modules
  • npm License

Requirements and caveats from upstream:

  • Downloading and installing Node.js and npm
  • Try the latest stable version of node
  • Creating Node.js modules

Basic usage or getting-started notes:

Documentation

Source

agentskillexchange/skills/tree/main/skills/npm-dependency-audit-scanner commit 99448728a4

Frequently asked questions

npx skillmds@latest add agentskillexchange/npm-dependency-audit-scanner