{"id":"8c2239c8-511c-4ea2-8a8e-d99a5d52fbc7","shortId":"BF9AK9","kind":"skill","title":"NPM Package Vulnerability Scanner","tagline":"Scans npm dependencies for known vulnerabilities using the npm audit JSON API and the OSV.dev REST API (api.osv.dev/v1/query). Cross-references findings with the GitHub Advisory Database (GHSA) for severity scoring.","description":"# NPM Package Vulnerability Scanner\n\nScans npm dependencies for known vulnerabilities using the npm audit JSON API and the OSV.dev REST API (api.osv.dev/v1/query). Cross-references findings with the GitHub Advisory Database (GHSA) for severity scoring.\n\n## Installation\n\nUse the upstream install or setup path that matches your environment:\n- npm-audit | npm Docs Skip to search Skip to content\n- npm Docs\n- npm package scope, access level, and visibility\n- Docker and private modules\n\nRequirements and caveats from upstream:\n- Downloading and installing Node.js and npm\n- Try the latest stable version of node\n- Creating Node.js modules\n\nBasic usage or getting-started notes:\n- Creating a strong password\n- Receiving a one-time password over email\n- About two-factor authentication\n\n- Source: https://docs.npmjs.com/cli/v10/commands/npm-audit/\n\n## Documentation\n\n- https://docs.npmjs.com/cli/v10/commands/npm-audit/\n\n## Source\n\n- [Agent Skill Exchange](https://agentskillexchange.com/skills/npm-package-vulnerability-scanner/)","tags":["npm","package","vulnerability","scanner","skills","agentskillexchange","agent-skills","ai-agents","ai-tools","awesome-list","claude-code","codex"],"capabilities":["skill","source-agentskillexchange","skill-npm-package-vulnerability-scanner","topic-agent-skills","topic-ai-agents","topic-ai-tools","topic-awesome-list","topic-claude-code","topic-codex","topic-cursor","topic-llm","topic-mcp","topic-npx-skills","topic-openclaw","topic-skills-catalog"],"categories":["skills"],"synonyms":[],"warnings":[],"endpointUrl":"https://skills.sh/agentskillexchange/skills/npm-package-vulnerability-scanner","protocol":"skill","transport":"skills-sh","auth":{"type":"none","details":{"cli":"npx skills add agentskillexchange/skills","source_repo":"https://github.com/agentskillexchange/skills","install_from":"skills.sh"}},"qualityScore":"0.454","qualityRationale":"deterministic score 0.45 from registry signals: · indexed on github topic:agent-skills · 8 github stars · SKILL.md body (1,027 chars)","verified":false,"liveness":"unknown","lastLivenessCheck":null,"agentReviews":{"count":0,"score_avg":null,"cost_usd_avg":null,"success_rate":null,"latency_p50_ms":null,"narrative_summary":null,"summary_updated_at":null},"enrichmentModel":"deterministic:skill-github:v1","enrichmentVersion":1,"enrichedAt":"2026-05-18T19:11:29.818Z","embedding":null,"createdAt":"2026-05-18T13:18:00.886Z","updatedAt":"2026-05-18T19:11:29.818Z","lastSeenAt":"2026-05-18T19:11:29.818Z","tsv":"'/cli/v10/commands/npm-audit/':159,163 '/skills/npm-package-vulnerability-scanner/)':170 '/v1/query).':24,61 'access':103 'advisori':32,69 'agent':165 'agentskillexchange.com':169 'agentskillexchange.com/skills/npm-package-vulnerability-scanner/)':168 'api':16,21,53,58 'api.osv.dev':23,60 'api.osv.dev/v1/query).':22,59 'audit':14,51,89 'authent':155 'basic':132 'caveat':113 'content':97 'creat':129,139 'cross':26,63 'cross-refer':25,62 'databas':33,70 'depend':7,44 'doc':91,99 'docker':107 'docs.npmjs.com':158,162 'docs.npmjs.com/cli/v10/commands/npm-audit/':157,161 'document':160 'download':116 'email':150 'environ':86 'exchang':167 'factor':154 'find':28,65 'get':136 'getting-start':135 'ghsa':34,71 'github':31,68 'instal':75,79,118 'json':15,52 'known':9,46 'latest':124 'level':104 'match':84 'modul':110,131 'node':128 'node.js':119,130 'note':138 'npm':1,6,13,38,43,50,88,90,98,100,121 'npm-audit':87 'one':146 'one-tim':145 'osv.dev':19,56 'packag':2,39,101 'password':142,148 'path':82 'privat':109 'receiv':143 'refer':27,64 'requir':111 'rest':20,57 'scan':5,42 'scanner':4,41 'scope':102 'score':37,74 'search':94 'setup':81 'sever':36,73 'skill':166 'skill-npm-package-vulnerability-scanner' 'skip':92,95 'sourc':156,164 'source-agentskillexchange' 'stabl':125 'start':137 'strong':141 'time':147 'topic-agent-skills' 'topic-ai-agents' 'topic-ai-tools' 'topic-awesome-list' 'topic-claude-code' 'topic-codex' 'topic-cursor' 'topic-llm' 'topic-mcp' 'topic-npx-skills' 'topic-openclaw' 'topic-skills-catalog' 'tri':122 'two':153 'two-factor':152 'upstream':78,115 'usag':133 'use':11,48,76 'version':126 'visibl':106 'vulner':3,10,40,47","prices":[{"id":"78c76da2-a341-4cc4-a46f-4082347ac501","listingId":"8c2239c8-511c-4ea2-8a8e-d99a5d52fbc7","amountUsd":"0","unit":"free","nativeCurrency":null,"nativeAmount":null,"chain":null,"payTo":null,"paymentMethod":"skill-free","isPrimary":true,"details":{"org":"agentskillexchange","category":"skills","install_from":"skills.sh"},"createdAt":"2026-05-18T13:18:00.886Z"}],"sources":[{"listingId":"8c2239c8-511c-4ea2-8a8e-d99a5d52fbc7","source":"github","sourceId":"agentskillexchange/skills/npm-package-vulnerability-scanner","sourceUrl":"https://github.com/agentskillexchange/skills/tree/main/skills/npm-package-vulnerability-scanner","isPrimary":false,"firstSeenAt":"2026-05-18T13:18:00.886Z","lastSeenAt":"2026-05-18T19:11:29.818Z"}],"details":{"listingId":"8c2239c8-511c-4ea2-8a8e-d99a5d52fbc7","quickStartSnippet":null,"exampleRequest":null,"exampleResponse":null,"schema":null,"openapiUrl":null,"agentsTxtUrl":null,"citations":[],"useCases":[],"bestFor":[],"notFor":[],"kindDetails":{"org":"agentskillexchange","slug":"npm-package-vulnerability-scanner","github":{"repo":"agentskillexchange/skills","stars":8,"topics":["agent-skills","ai-agents","ai-tools","awesome-list","claude-code","codex","cursor","llm","mcp","npx-skills","openclaw","skills-catalog"],"license":"mit","html_url":"https://github.com/agentskillexchange/skills","pushed_at":"2026-05-18T19:02:17Z","description":"The open catalog of AI agent skills — 2,000+ security-scanned skills for Claude Code, Cursor, Codex, and more.","skill_md_sha":"29b87b131f9eb3e34790c85f41dc69238fe5395b","skill_md_path":"skills/npm-package-vulnerability-scanner/SKILL.md","default_branch":"main","skill_tree_url":"https://github.com/agentskillexchange/skills/tree/main/skills/npm-package-vulnerability-scanner"},"layout":"multi","source":"github","category":"skills","frontmatter":{"name":"NPM Package Vulnerability Scanner","description":"Scans npm dependencies for known vulnerabilities using the npm audit JSON API and the OSV.dev REST API (api.osv.dev/v1/query). Cross-references findings with the GitHub Advisory Database (GHSA) for severity scoring."},"skills_sh_url":"https://skills.sh/agentskillexchange/skills/npm-package-vulnerability-scanner"},"updatedAt":"2026-05-18T19:11:29.818Z"}}