scan-package

Official

Pre-scan packages before installation.

AuthorNOMARJ
Version1.0.0
Installs0

System Documentation

What problem does it solve?

This Skill helps teams identify and block risky Python (pip) and Node.js (npm) packages before installation, reducing supply chain risk and potential agent compromise.

Core Features & Use Cases

  • Pre-install package scanning for pip and npm using Sigil
  • Flags risky patterns like install hooks, network calls, or credential access
  • Use during dependency updates or new package installations to enforce safe behavior

Quick Start

Run Sigil to scan a package before installation and review the findings.

Dependency Matrix

Required Modules

None required

Components

Standard package

💻 Claude Code Installation

Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.

Please help me install this Skill:
Name: scan-package
Download link: https://github.com/NOMARJ/sigil/archive/main.zip#scan-package

Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
View Source Repository

Agent Skills Search Helper

Install a tiny helper to your Agent, search and equip skill from 471,000+ vetted skills library on demand.