A vulnerability scanner for container images and filesystems
$ npx skills add anchore/grypeAlternatives
Compare similar skills by workflow fit, trust score, quality, GitHub adoption, maintenance, and install readiness.
Current skill
Protect against malicious open source packages 🤖
A vulnerability scanner for container images and filesystems
$ npx skills add anchore/grypeGo security checker
$ npx skills add securego/gosecCLI tool and library for generating a Software Bill of Materials from container images and filesystems
$ npx skills add anchore/syftA tool to enforce Swift style and conventions.
$ npx skills add realm/SwiftLintMobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.
$ npx skills add MobSF/Mobile-Security-Framework-MobSFProgram for determining types of files for Windows, Linux and MacOS.
$ npx skills add horsicq/Detect-It-EasyCheckstyle is a development tool to help programmers write Java code that adheres to a coding standard. By default it supports the Google Java Style Guide and Sun Code Conventions, but is highly configurable. It can be invoked with an ANT task and a command line program.
$ npx skills add checkstyle/checkstylePrevent cloud misconfigurations and find vulnerabilities during build-time in infrastructure as code, container images and open source packages with Checkov by Bridgecrew.
$ npx skills add bridgecrewio/checkovA powerful and open-source toolkit for hackers and security automation - 安全行业从业者自研开源扫描器合辑
$ npx skills add We5ter/Scanners-BoxOfficial ESLint plugin for Vue.js
$ npx skills add vuejs/eslint-plugin-vueVulnerability Static Analysis for Containers
$ npx skills add quay/clair🔍 A Hex Editor for Reverse Engineers, Programmers and people who value their retinas when working at 3 AM.
$ npx skills add WerWolv/ImHexAn extremely fast Python linter and code formatter, written in Rust.
$ npx skills add astral-sh/ruffShellCheck, a static analysis tool for shell scripts
$ npx skills add koalaman/shellcheckLightweight static analysis for many languages. Find bug variants with patterns that look like source code.
$ npx skills add semgrep/semgrepThe OWASP Mobile Application Security Testing Guide (MASTG) is a comprehensive manual for mobile app security testing and reverse engineering. It describes technical processes for verifying the OWASP Mobile Security Weakness Enumeration (MASWE) weaknesses, which are in alignment with the OWASP MASVS.
$ npx skills add OWASP/mastgHow to choose
Use an alternative when it has a clearer install path, higher trust score, fresher maintenance, or better platform fit for your current agent stack. Keep Vet if it already passes your workflow test and repository review.
Next step
Open the compare page, test the install commands in a sandbox, and check each repository before using a skill in production.
Alternatives
Compare similar skills by workflow fit, trust score, quality, GitHub adoption, maintenance, and install readiness.
Current skill
Protect against malicious open source packages 🤖
A vulnerability scanner for container images and filesystems
$ npx skills add anchore/grypeGo security checker
$ npx skills add securego/gosecCLI tool and library for generating a Software Bill of Materials from container images and filesystems
$ npx skills add anchore/syftA tool to enforce Swift style and conventions.
$ npx skills add realm/SwiftLintMobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.
$ npx skills add MobSF/Mobile-Security-Framework-MobSFProgram for determining types of files for Windows, Linux and MacOS.
$ npx skills add horsicq/Detect-It-EasyCheckstyle is a development tool to help programmers write Java code that adheres to a coding standard. By default it supports the Google Java Style Guide and Sun Code Conventions, but is highly configurable. It can be invoked with an ANT task and a command line program.
$ npx skills add checkstyle/checkstylePrevent cloud misconfigurations and find vulnerabilities during build-time in infrastructure as code, container images and open source packages with Checkov by Bridgecrew.
$ npx skills add bridgecrewio/checkovA powerful and open-source toolkit for hackers and security automation - 安全行业从业者自研开源扫描器合辑
$ npx skills add We5ter/Scanners-BoxOfficial ESLint plugin for Vue.js
$ npx skills add vuejs/eslint-plugin-vueVulnerability Static Analysis for Containers
$ npx skills add quay/clair🔍 A Hex Editor for Reverse Engineers, Programmers and people who value their retinas when working at 3 AM.
$ npx skills add WerWolv/ImHexAn extremely fast Python linter and code formatter, written in Rust.
$ npx skills add astral-sh/ruffShellCheck, a static analysis tool for shell scripts
$ npx skills add koalaman/shellcheckLightweight static analysis for many languages. Find bug variants with patterns that look like source code.
$ npx skills add semgrep/semgrepThe OWASP Mobile Application Security Testing Guide (MASTG) is a comprehensive manual for mobile app security testing and reverse engineering. It describes technical processes for verifying the OWASP Mobile Security Weakness Enumeration (MASWE) weaknesses, which are in alignment with the OWASP MASVS.
$ npx skills add OWASP/mastgHow to choose
Use an alternative when it has a clearer install path, higher trust score, fresher maintenance, or better platform fit for your current agent stack. Keep Vet if it already passes your workflow test and repository review.
Next step
Open the compare page, test the install commands in a sandbox, and check each repository before using a skill in production.