Supply Chain Audit

Audit the supply-chain threat landscape of project dependencies. Part of the Nomark Method Layer 1 security scanning. Use whenever dependency files change (package.json, requirements.txt, go.mod, Cargo.toml), someone adds a new dependency, or someone asks 'are our dependencies safe', 'dependency audit', 'supply chain risk'.

nomarj 394f367 3.0 KB Updated

File contents

nomarj/sigil/tree/main/packs/security/skills/owasp-security/supply-chain-audit commit 394f367a40

Frequently asked questions

npx skillmds@latest add nomarj/supply-chain-audit