Repo Scan

Use when the user wants to evaluate a GitHub repository before installing, running, forking, or depending on it. Takes a GitHub repo URL, cleans tracking params, shallow-clones to /tmp, inspects dependency/supply-chain risk, static vulnerability patterns, issue-reported security problems, maintainer health, and produces a risk summary. NOT for reviewing the user's own PR diff or for running untrusted code.

KerberosClaw Updated

File contents

KerberosClaw/kc_ai_skills/tree/main/repo-scan commit 0369265d63

Frequently asked questions

npx skillmds@latest add kerberosclaw/repo-scan