Skill comparison
Use this as a shortlist, then open the skill detail page before adopting.
Decision summary
Strongest overall
Log4j Detector
Do a manual repository review before adding this to an agent workflow.
Fastest prototype
Log4j Detector
Best first install candidate based on install readiness and adoption.
Freshest repo
Log4j Detector
Most recent maintenance signal among this shortlist.
| Signal | Log4j Detector A public open sourced tool. Log4J scanner that detects vulnerable Log4J versions (CVE-2021-44228, CVE-2021-45046, etc) on your file-system within any application. It is able to even find Log4J instances that are hidden several layers deep. Works on Linux, Windows, and Mac, and everywhere else Java runs, too! TAG_OS_TOOL, OWNER_KELLY, DC_PUBLIC |
|---|---|
| Quality | 49/100 Needs review |
| Decision verdict | 51/100 Needs manual review Do a manual repository review before adding this to an agent workflow. |
| Adoption | 640 stars 0 installs |
| Freshness | Mar 10, 2022 |
| Use-case fit | |
| Stack fit | |
| Platform hints | Java, Security, Claude Code |
| Warnings | Repository looks stale · No OpenAgentSkill engagement data yet |
| Best for |
| Workflow automation workflows · Claude Code teams · teams that value GitHub adoption signals |
| Not ideal for | teams that require actively maintained dependencies · production agents without a repository review |
| OpenAgentSkill engagement | 0 views 0 install copies |
| Install | $ npx skills add mergebase/log4j-detector |