apps/docs/skills/dependabit-detector/SKILL.md
Documentation site for dependabit Use when: You need to plug in a custom or self-hosted language model as the....
npx skillsauth add pradeepmouli/dependabit dependabit-detectorInstall this skill globally with one command. Works with Claude Code, Cursor, and Windsurf.
3 of 9 scanners reported clean
Some scanners were skipped, did not run, or reported a non-clean status. Review each row below.
Documentation site for dependabit
Use this skill when:
GitHubCopilotProviderDetectorDo NOT use when:
dependencies array has a small overhead but is safe. (GitHubCopilotProvider)Detector)temperature: 0. (Detector)API surface: 16 functions, 2 classes, 12 types, 1 constants
LLMResponse shape. Returning plain text causes the detector to silently produce zero LLM-sourced results.analyze response across different model values — classification schemes differ between model versions.DetectorOptions.llmProvider when reproducibility matters.dependencies arrays if LLM classification is involved. Never diff two manifests by dependency count alone.2 configuration interfaces — see references/config.md for details.
Key functions: createDetectionPrompt (Renders a detection prompt by substituting the content-type, file path,
and raw content into DETECTION_PROMPT_TEMPLATE), createClassificationPrompt (Renders a classification prompt for a single URL, asking the LLM to
determine the dependency type and best access method)
Key classes: GitHubCopilotProvider (Contract that all LLM provider implementations must satisfy), Detector (Orchestrates multi-stage detection of informational external dependencies
inside a local repository clone)
31 exports total — see references/ for full API.
Load these on demand — do NOT read all at once:
references/functions.md for full signatures, parameters, and return typesreferences/classes/ for properties, methods, and inheritancereferences/types.mdreferences/variables.mdreferences/config.md for all settings and defaultstools
Use when working with dependabit (action, detector, github-client, manifest, monitor, test-utils, utils, plugins, plugin-arxiv, plugin-context7, plugin-skills).
tools
dependabot for resources, related projects, and knowledge Use when working with dependency, monitoring, security, vulnerability, changelog, version-tracking, github, automation, ai.
tools
dependabot for resources, related projects, and knowledge Use when working with dependency, monitoring, security, vulnerability, changelog, version-tracking, github, automation, ai.
tools
dependabot for resources, related projects, and knowledge Use when working with dependency, monitoring, security, vulnerability, changelog, version-tracking, github, automation, ai.