🔍
QualityPython

Skill Supply Chain Audit

by seb1n

Skill Supply Chain Audit is a Quality skill for Claude Code, published by seb1n in awesome-ai-agent-skills.

174 stars32 forkson seb1n/awesome-ai-agent-skillsAdded 2026/09/07+2% in starsRepository updated 2026/08/09
agent-skillsai-agent-skillsai-agentsawesome-listclaude-codeclaude-code-skillsclaude-skillscodexcodex-skillscontext-engineeringcursorcursor-skillsgemini-cligemini-skillsgithub-copilotmcpopenai-codexskill-mdskillswindsurf
Install in seconds
Install Skill Supply Chain Audit
Copy Skill Supply Chain Audit into your Claude Code skills folder. Run the command in your terminal, or review the source on GitHub before installing.
terminal
npx degit https://github.com/seb1n/awesome-ai-agent-skills/tree/main/agent-security/skill-supply-chain-audit ~/.claude/skills/skill-supply-chain-audit

Requires Node.js. Downloads this skill only — not the rest of the repository — into your Claude Code skills folder.

Without Node.js

git clone https://github.com/seb1n/awesome-ai-agent-skills.git

Clones the whole repository, then copy the skill’s own directory into your skills folder yourself.

In this catalog

Source file
agent-security/skill-supply-chain-audit/SKILL.md in seb1n/awesome-ai-agent-skills
Installs to
~/.claude/skills/skill-supply-chain-audit
Collection
One of 25 skills cataloged from this repository
Category
Quality1817 skills

What Skill Supply Chain Audit does

Skill Supply Chain Audit reviews third-party skills, prompts, manifests, scripts, dependencies, and bundled assets for provenance, injection risk, permissions, execution, exfiltration, persistence, and update risk. Use it before installing or updating an untrusted skill or repository.

Skill Supply Chain Audit is cataloged under Quality on DirSkills. Skill Supply Chain Audit comes from a repository tagged agent-skills, ai-agent-skills, ai-agents, awesome-list and claude-code.

Documentation

README

Skill Supply Chain Audit

Treat the target as untrusted. Produce an evidence-backed disposition without executing package code by default.

Inputs

Collect or state:

  • Target path, archive, repository snapshot, or exact version/commit.
  • Claimed purpose, publisher, source URL, license, and expected capabilities.
  • Intended runtime, available tools, requested permissions, and data sensitivity.
  • Known-good baseline or prior version when this is an update.
  • User constraints for network access, sandboxing, and dynamic testing.

If provenance or version is unknown, record it as unknown; do not infer trust from popularity.

Output contract

Return:

This is the opening of the README. Read the full README on GitHub.

Frequently asked about Skill Supply Chain Audit

  • What else does seb1n publish alongside Skill Supply Chain Audit?

    Skill Supply Chain Audit is one of 25 skills that DirSkills catalogs from seb1n/awesome-ai-agent-skills, the repository it ships in. Its siblings there include API Design, API Integration and Agent Evaluation. Each one is a separate skill with its own page in this directory, installs the same way Skill Supply Chain Audit does, and is maintained by seb1n in that same repository. The rest of the collection is listed on the seb1n/awesome-ai-agent-skills page.

  • How does Skill Supply Chain Audit compare to other Quality skills?

    Skill Supply Chain Audit ranks #1724 by stars among the 1817 Quality skills in this catalog. The most-starred ones next to it are Benchmark, Benchmark Optimization Loop and API Design Patterns. DirSkills ranks by the star count of the repository each skill ships in, so that order reflects how popular those repositories are rather than any review of Skill Supply Chain Audit against them. Open each page to compare what they document and how they install.

More from seb1n/awesome-ai-agent-skills

Skill Supply Chain Audit is one of 25 skills cataloged on DirSkills from seb1n/awesome-ai-agent-skills.

See all 25 skills
🧩
2h ago

API Design

API Design helps design production-quality RESTful APIs with resource modeling, HTTP methods, status codes, pagination, versioning, and OpenAPI docs. Use it when you need endpoint definitions, schemas, or a REST API specification.
AI Engineering
17432
🔌
2h ago

API Integration

API Integration builds reliable clients for external APIs using REST, webhooks, polling, or SDK wrappers. It handles authentication, rate limits, retries, and error handling when you need production-ready integration code.
AI Engineering
17432
🧪
2h ago

Agent Evaluation

Agent Evaluation designs reproducible tests for AI agents using task sets, rubrics, graders, baselines, and release gates. Use it when comparing prompts or models, validating a release, or investigating regressions.
Quality
17432
📈
2h ago

Agent Observability

Agent Observability designs privacy-aware telemetry for AI agents using traces, spans, metrics, dashboards, and alerts. Use it to debug failures, measure latency and cost, define SLOs, and audit agent behavior.
AI Engineering
17432
🛡️
2h ago

Agent Red Teaming

Agent Red Teaming plans, executes, documents, and retests authorized security assessments of AI agents and multi-agent workflows. Use it to test prompt injection, tool and identity boundaries, memory or cross-agent attacks, and remediation in approved environments.
AI Engineering
17432
📝
2h ago

Code Documentation

Code Documentation generates docstrings, API references, and README files from source code. Use it when you need inline docs, usage guides, or project documentation for existing codebases.
Writing
17432