Audit npm dependencies for security and updates
Scanned 9/9/2026
Install to Claude Code
npx -y skills add baekenough/oh-my-customcode --skill npm-audit --agent claude-codeInstalls into .claude/skills of the current project.
Are you the author of Npm Audit?
Add the live security badge to your README — it updates automatically with every re-scan.
[](https://www.skillsdirectory.com/skills/baekenough-npm-audit)More formats (shields.io, HTML) on the badges page.
---
name: omcustom:npm-audit
description: Audit npm dependencies for security and updates
scope: package
argument-hint: "[--fix] [--production]"
user-invocable: true
---
# NPM Audit Skill
Audit npm dependencies for security vulnerabilities and outdated packages.
## Options
```
--fix Automatically fix vulnerabilities where possible
--production Only audit production dependencies
--json Output in JSON format
```
## Workflow
```
1. Run npm audit for security vulnerabilities
2. Analyze vulnerability severity
3. Check for outdated dependencies
4. Generate health report
5. Suggest remediation steps
```
## Output Format
### Success
```
[NPM Audit] package-name
Security:
Critical: 0
High: 0
Moderate: 2
Low: 1
Outdated:
Major updates: 3
Minor updates: 5
Patch updates: 12
Status: Needs attention (2 moderate vulnerabilities)
Recommendations:
1. npm update lodash
2. npm update axios
```
### Failure
```
[NPM Audit] Failed
Error: {error_message}
Hint: Ensure package-lock.json exists
```
## Examples
```bash
# Full dependency audit with report
npm-audit
# Audit and fix vulnerabilities
npm-audit --fix
# Audit only production dependencies
npm-audit --production
```
Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.
No comments yet. Be the first to comment!
Java Spring Boot 服务中关于身份验证/授权、验证、CSRF、密钥、标头、速率限制和依赖安全的 Spring Security 最佳实践。
Use this skill when adding authentication, handling user input, working with secrets, creating API endpoints, or implementing payment/sensitive features. Provides comprehensive security checklist and patterns.
Create, comment on, update, and list Paperclip tasks from Hermes using scoped Paperclip API credentials.
Write a short, colloquial summary for a Paperclip summary slot: open with the 1–3 specific, concrete actions the reader needs to take right now to unblock the work, then a brief plain-language status, streaming progress as it works.
Complete security architecture overhaul for claude-flow v3. Addresses critical CVEs (CVE-1, CVE-2, CVE-3) and implements secure-by-default patterns. Use for security-first v3 implementation.