dependency-management
Dependency auditing, version management, and security vulnerability scanning.
🛡️ AgentReady threat assessment
MAESTRO 7-layer threat model + OWASP AIVSS risk score for dependency-management, derived from its capabilities.
These scores are auto-generated from public information (the agent's own listing, docs, and repository) using the canonical OWASP AIVSS formula and the MAESTRO framework — an estimate for guidance, not a penetration test, audit, or certification. See the scoring methodology — every score is re-derived by the same automated method as an agent's public evidence changes.
Overview
A Claude Code plugin bundling subagents for dependency auditing, version management, and security vulnerability scanning across a project's dependencies. It reads lockfiles/manifests and runs audit tooling, placing it on the supply-chain security surface.
Key features and capabilities
- Dependency audit + upgrades
- Vulnerability scanning
- Version management
Use cases
- Audit dependencies for CVEs
- Keep dependency versions safe