composer-upgrade

Installation
SKILL.md

Composer Upgrade

Upgrade Workflow

Follow this sequence when upgrading a PHP project:

  1. Check for security issuescomposer audit — fixes here are highest priority
  2. Identify what's outdatedcomposer outdated --format=json
  3. Prioritize — packages with CVEs AND outdated go first; see references/audit.md
  4. Diagnose blockerscomposer why-not vendor/package version — note any sub-packages blocking the update
  5. Trace dependenciescomposer why vendor/package
  6. Update packagescomposer update vendor/package — if blocked, include identified blockers: composer update vendor/package blocker/one blocker/two
  7. Test
  8. Harden constraintscomposer bump (applications only)
  9. Re-auditcomposer audit to confirm all advisories are resolved

See references/commands.md for full flag reference, including global flags for non-interactive use (--no-interaction --no-progress --no-ansi). See references/upgrade-workflow.md for detailed strategies, including merge conflict resolution. See references/audit.md for security audit details, severity tiers, and how to build a prioritized package list.

Related skills

More from peterfox/agent-skills

Installs
44
GitHub Stars
11
First Seen
Feb 23, 2026