Use this skill when the user wants to generate a Software Bill of Materials (SBOM) from container images or filesystems.
Scanned 9/6/2026
Install to Claude Code
npx -y skills add javimosch/supercli --skill quickstart --agent claude-codeInstalls into .claude/skills of the current project.
Are you the author of Quickstart?
Add the live security badge to your README — it updates automatically with every re-scan.
[](https://www.skillsdirectory.com/skills/javimosch-quickstart-0836cbf1)More formats (shields.io, HTML) on the badges page.
---
name: syft
description: Use this skill when the user wants to generate a Software Bill of Materials (SBOM) from container images or filesystems.
---
# syft Plugin
CLI tool for generating Software Bill of Materials from container images and filesystems.
## Commands
### Scanning
- `syft self version` — Print syft version
- `syft scan image <image>` — Scan container image for SBOM
- `syft scan directory <path>` — Scan directory for SBOM
- `syft _ _` — Passthrough to syft CLI
## Usage Examples
- "Generate SBOM for my Docker image"
- "Scan current directory for dependencies"
- "Export SBOM in CycloneDX JSON format"
## Installation
```bash
curl -sSfL https://get.anchore.io/syft | sudo sh -s -- -b /usr/local/bin
```
## Examples
```bash
# Scan container image
syft alpine:latest
# Scan directory
syft ./my-project
# Export to CycloneDX JSON
syft <image> -o cyclonedx-json
# Export to SPDX JSON
syft <image> -o spdx-json
# Multiple SBOMs to files
syft <image> -o spdx-json=./spdx.json -o cyclonedx-json=./cdx.json
```
## Key Features
- Supports container images, filesystems, archives
- Dozens of packaging ecosystems (Alpine, Debian, RPM, Go, Python, Java, etc.)
- Multiple output formats (CycloneDX, SPDX, Syft JSON)
- Works with Grype for vulnerability scanning
- OCI, Docker, Singularity support
Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.
No comments yet. Be the first to comment!
Playbook for creating and editing uCoz landing pages via MCP tools (`templates_tool`, `ftp_tool`, `modules_tool`). Use for tasks such as: "build a landing page", "update the homepage as a landing page", "create a promo page on the homepage", "add a lead form / menu / SEO to the homepage". Homepage: `page_list`, `page_get`; first publish — `page_update` with full `page_tmpl`; HTML edits after generation — `patch_template` (module_id=2, template_id=1), not `update_template`. Activate the mail f...
Interact with the Paperclip control plane API to manage tasks, coordinate with other agents, and follow company governance. Use when you need to check assignments, update task status, delegate work, post comments, set up or manage routines (recurring scheduled tasks), or call any Paperclip API endpoint. Do NOT use for the actual domain work itself (writing code, research, etc.) — only for Paperclip coordination.
Instantly.ai cold email outreach API - manage campaigns, leads, accounts, and analytics. Use for cold email automation, lead management, campaign creation/monitoring, and email account warmup.
Digital Audio Workstation usage, music composition, interactive music systems, and game audio implementation for immersive soundscapes.
Compress natural language memory files (CLAUDE.md, todos, preferences) into caveman format to save input tokens. Preserves all technical substance, code, URLs, and structure. Compressed version overwrites the original file. Human-readable backup saved as FILE.original.md. Trigger: /caveman-compress FILEPATH or "compress memory file"