Lightlines
Catalogue
Sign in
By ghostsecurity

ghost-scan-deps

ghostsecurity

Find exploitable dependency flaws and practical fixes.

dependency security

What it does

Scans project dependency lockfiles for exploitable vulnerabilities and provides severity assessments and remediation guidance.

When to use it

Use when the user requests dependency vulnerability scanning, CVE checks, or a security audit of dependency lockfiles.

How to use it

Give it a project to scan; it saves a dependency vulnerability report under ~/.ghost and reports the results to the user.

What you provide

  • An existing project

Uses


Access · 4

This skill

Wraith install script

Execute

Wraith’s remote installer (irreversible)

GitHub Releases

Read

Downloads Wraith from GitHub

OSV database

Read

Queries the OSV database

<cache_dir>/repo.md

Read

Reads cached repository context

Good to know

  • starts 1 helper agents
  • starts one helper agent per item, so the count depends on the work
  • cannot be undone: Wraith install script

What you need · 1

Requires a supported Linux, macOS, or Windows platform; Windows uses Git Bash, WSL, or MSYS2.


About this skill

Visibility
Public
Repository
ghostsecurity/skills
Created
Oct 8, 2026
Updated
Oct 8, 2026
Files
10