dependabot-alerts-update
Installation
SKILL.md
Dependabot Alerts Update
Automatically fetch Dependabot security alerts from GitHub and update vulnerable packages to secure versions.
Workflow
1. Fetch Dependabot Alerts
Use GitHub REST API to fetch open Dependabot alerts:
# Get repository owner and name from git remote
git remote get-url origin
# Fetch alerts (requires GITHUB_TOKEN)
curl -H "Authorization: token $GITHUB_TOKEN" \
-H "Accept: application/vnd.github+json" \
"https://api.github.com/repos/{owner}/{repo}/dependabot/alerts?state=open"