supply-chain-dependency-risks-ai-code

Understand supply chain vulnerabilities and dependency risks in AI-generated code including outdated packages, malicious packages, and dependency confusion attacks. Use this skill when you need to learn about vulnerable dependencies in AI code, understand supply chain attacks, recognize typosquatting, or identify outdated package suggestions. Triggers include "supply chain attacks", "dependency vulnerabilities", "outdated packages", "malicious npm packages", "typosquatting", "dependency confusion", "vulnerable dependencies AI", "npm security".

$ 安裝

git clone https://github.com/harperaa/secure-claude-skills /tmp/secure-claude-skills && cp -r /tmp/secure-claude-skills/security-awareness/supply-chain-risks ~/.claude/skills/secure-claude-skills

// tip: Run this command in your terminal to install the skill