sbom-syft
Generate Software Bill of Materials (SBOM) for container images and filesystems using Syft. Supports 28+ ecosystems, multiple formats like CycloneDX and SPDX, and integration into CI/CD for supply chain security.
Discover reusable agent skills, browse implementation details, and find the right skill for your workflow.
159 skills found
Generate Software Bill of Materials (SBOM) for container images and filesystems using Syft. Supports 28+ ecosystems, multiple formats like CycloneDX and SPDX, and integration into CI/CD for supply chain security.
Analyze project structures, dependencies, and patterns using parallel agent execution to generate comprehensive context documentation for rapid codebase onboarding and AI-assisted development.
Analyze GitHub repository structure, documentation, dependencies, and contributor patterns for codebase health and development insights.
A pre-flight release checklist system to verify build paths, tests, and CI status before tagging, preventing failed deployments and repetitive retagging cycles.
Analyze Kubernetes controller code to generate contract-compliant dependency graph artifacts for the Kamera coverage strategy.
Map the attack surface of smart contract codebases by identifying and categorizing state-changing entry points.
Initiates automated reverse engineering by discovering codebase architecture, layers, and technology stacks to facilitate system modernization or documentation.
Automated security auditing for project dependencies. Scans package files (npm, pip, maven, etc.) for vulnerabilities, CVEs, and license issues, offering automated fix suggestions and integration for secure deployment workflows.
Discover, analyze, and summarize trending GitHub repositories, project health, and technical stacks to stay updated on open-source ecosystems.
Identify and document Customer Problems (CP) from business context. Use when starting requirements engineering or when stakeholders describe solutions instead of problems. Step 1 of Problem-Based SRS methodology.
Conduct thorough dependency audits to identify redundant code, unused features, and improper usage patterns. Ensures project modularity by leveraging existing dependencies instead of reinventing functionality.
Framework for orchestrating long-running agentic tasks, evidence-based delivery, and automated QA gates following Simon Willison's iterative loop.