Skip to content
Back to skills

Add Dependency

ASecurity

Add a new third-party dependency to the project following the version catalog and approval workflow.

  • 416 stars
  • 0 votes
  • 0 copies
  • 2 views
  • Added February 8, 2026
devopsgo

Security analysis

A100/100

Pro scans all 2 files and shows the line behind each finding

Scanned February 12, 2026

npx -y skills add aiskillstore/marketplace --skill add-dependency --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Add Dependency?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Add Dependency
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/aiskillstore-add-dependency/badge)](https://www.skillsdirectory.com/skills/aiskillstore-add-dependency)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
name: add-dependency
description: Add a new third-party dependency to the project following the version catalog and approval workflow.
---

# Add Third-Party Dependency

This skill outlines the necessary steps to validly adding a new dependency to the project.

## Workflow

1.  **Verify Necessity**:
    *   **Goal**: Ensure the dependency is absolutely necessary.
    *   **Action**: Avoid adding new third-party dependencies unless there is no tailored solution available or implementing it manually helps the project significantly.
    *   **Action**: You **MUST** get user approval before adding any new third-party dependency. Explain why it is needed and what alternatives were considered.

2.  **Find Latest Version**:
    *   **Goal**: Use the most up-to-date stable version.
    *   **Action**: Perform a web search to determine the latest stable version of the library.
    *   **Example**: `search_web(query="latest version of retrofit")`

3.  **Update Version Catalog**:
    *   **Goal**: Centralize dependency management.
    *   **Action**: Add the dependency to `gradle/libs.versions.toml`.
    *   **Format**:
        ```toml
        [versions]
        libraryName = "1.2.3"

        [libraries]
        library-artifact = { group = "com.example", name = "library-artifact", version.ref = "libraryName" }
        ```

4.  **Sync and Build**:
    *   **Goal**: Verify the dependency is resolved correctly.
    *   **Action**: Run a build or sync command to ensure the new dependency doesn't break the build.
    *   **Command**: `./gradlew assembleDebug` (or relevant task).

## Guidelines
- **Approval First**: Do not modify files before getting confirmation from the user (unless in a fully autonomous mode where this is pre-approved).
- **No Hardcoding**: Never put version numbers directly in `build.gradle.kts` files. Always use the version catalog (`libs.versions.toml`).

Files in this skill

  • SKILL.md1.9 KB
  • skill-report.json8.2 KB

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…