Synaptic SkillsSynapticSkills
MarketplaceSkill GraphCriar SkillMCP ServerPlataformaEnterprise
v0.1.0-beta
Voltar ao Marketplace
SecurityMédio

Supply Chain Risk Auditor

portrailofbits·trailofbits· v1.0.0 · atualizado em 2026-04-10
79
Score

Identifies dependencies at heightened risk of exploitation or takeover. Use when assessing supply chain attack surface, evaluating dependency health, or scoping security engagements.

supply-chain-securitydependency-analysisrisk-assessmentsecurity-auditvulnerability-managementsoftware-composition-analysis
0Stars
0Forks
0Usos
Fork

Documento do Skill

SKILL.mdsupply-chain-risk-auditor/workflow
1. Create a workspace directory and initialize a report file.
2. Identify all git repositories for direct dependencies.
3. Normalize the git repository entries to URLs.
4. For each dependency, evaluate its risk based on the defined criteria using the `gh` tool.
5. Add high-risk dependencies to the report, noting the reasons for flagging.
6. Suggest alternative dependencies for each high-risk dependency.
7. Summarize the risk factors and provide an executive summary with recommendations.

Telemetria de Agentes

Execuções
0
total
Taxa de Sucesso
0%
últimos 30d
Latência Média
0.0s
p50
Alucinação
0.0%
detecção
Tokens Entrada
0
avg 0/exec
Tokens Saída
0
avg 0/exec

Uso por Plataforma

Skills Relacionados

Compõe comDependency Updater
70%
Hebbian Synapse
Composite0.700
w = 0.3·α + 0.5·β + 0.2·γ
75
Similar aWallet Policy Generator
60%
Hebbian Synapse
Composite0.600
w = 0.3·α + 0.5·β + 0.2·γ
84
Similar aQuery Token Audit Skill
60%
Hebbian Synapse
Composite0.600
w = 0.3·α + 0.5·β + 0.2·γ
79
Similar aSpring Boot Security Review
60%
Hebbian Synapse
Composite0.600
w = 0.3·α + 0.5·β + 0.2·γ
80

Árvore do Skill

Supply Chain Risk Auditor
supply-chain-risk-auditor
Fases Cognitivas5
1.SENSE
2.CONTEXTUALIZE
3.EVALUATE
4.RECOMMEND
5.REFLECT
Triggers7
audit this project's dependenciesassess the supply chain riskevaluate dependency healthperform a supply chain security reviewidentify risky dependenciescheck for unmaintained dependenciesscan for potential supply chain vulnerabilities

Avaliar este Skill

Score Breakdown

⭐Avaliação Humana0%
🤖Sucesso de Agentes0%
🕐Atualidade100%
🔗Saúde de Dependências100%
🕸️Centralidade no Grafo0%
🛡️Segurança50%
CompositeScore = α·Humano + β·Agente + γ·Recência + δ·Deps + ε·Centralidade + ζ·Segurança

Instalação

$ synaptic mcp download supply-chain-risk-auditor
$ synaptic skills detail supply-chain-risk-auditor
$ synaptic skills live supply-chain-risk-auditor

Dependências

gh

Links

GitHub Repository