About
The Dependency Security Scan skill is a comprehensive Software Composition Analysis (SCA) tool for Claude Code that protects your software supply chain. It automatically identifies package managers across Node.js, Python, Go, Java, and more, cross-referencing your manifests against major vulnerability databases like the NVD and GitHub Advisory Database. Beyond just detection, it provides actionable remediation paths, including an auto-fix mode that safely updates packages to patched versions, and a health check feature to identify deprecated or unmaintained libraries.