Packj

COMMUNITY

Packj stops :zap: Solarwinds-, ESLint-, and PyTorch-like attacks by flagging malicious/vulnerable open-source dependencies ("weak links") in your software supply-chain

Downloads 0
Stars 686
Version 1.0.0
Quality 80/100 · Strong

Install with one command

$ npx skills add ossillate-inc/packj

Best for

Coding agents

Discover skills for code generation, repository analysis, pull-request review, testing, debugging, and agentic software engineering.

Choose it when

  • You want a GitHub-backed skill with 686 stars.
  • You need a reusable install command for agents.
  • You want to compare it with related marketplace skills.

Check before install

  • Pushed 1mo ago
  • License: AGPL-3.0
  • Review the repository README and examples.

Quality profile

Strong candidate for agent workflows

Solid option that is likely worth shortlisting for production workflows.

80
GitHub stars
686
Freshness
1mo ago
Install ready
Yes
License
AGPL-3.0

Workflow fit

Use this skill in these scenarios

Stack fit

Add it to a complete workflow

Overview

Packj stops :zap: Solarwinds-, ESLint-, and PyTorch-like attacks by flagging malicious/vulnerable open-source dependencies ("weak links") in your software supply-chain

Imported by the skill-only GitHub discovery pipeline because it matches agent skill, automation, RAG, or developer-tool signals. Protocol-server projects are excluded from automated imports.

Platform Compatibility

pythonFULL
static-analysisFULL

Technical Details

Version
1.0.0
License
AGPL-3.0
Last Updated
5/24/2026
Published
5/24/2026

Frameworks & Tools

PythonStatic Analysis