dependency-analyzer

Pass

Audited by Gen Agent Trust Hub on Mar 10, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [COMMAND_EXECUTION]: The skill utilizes standard package management commands including npm audit, npm outdated, and npm update to perform dependency security and version checks.\n- [EXTERNAL_DOWNLOADS]: To provide comprehensive reporting, the skill downloads and runs several well-known community utilities via npx, such as bundle-phobia-cli, license-checker, depcheck, and webpack-bundle-analyzer.\n- [EXTERNAL_DOWNLOADS]: The skill incorporates the author's own package, @j0kz/dependency-analyzer, which is a vendor-owned resource used for automated dependency auditing consistent with the skill's purpose.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 10, 2026, 05:51 AM