dependency-updater
Pass
Audited by Gen Agent Trust Hub on Aug 21, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill uses standard package management tools (npm, pip, cargo, go, etc.) to perform its core functions of updating and auditing dependencies. It also references local utility scripts like
scripts/check-tool.shto verify environments.- [SAFE]: All external references point to well-known and trusted official tools or repositories (e.g., GitHub repositories for taze, pip-review, cargo-edit) or standard language ecosystems. The behavior is consistent with the stated purpose of dependency management.
Audit Metadata