Skip to main content

Dependency Audit Agent

Trusted
MITGold Verified100Agent

by AgentNode · published 14 days ago · agent

Scan project dependencies for known vulnerabilities, outdated versions, license issues, and leaked secrets.

Audit project dependencies by scanning for known CVEs, checking for outdated packages, verifying license compatibility, and detecting leaked secrets in configuration. This agent uses AgentNode's full skill registry to dynamically discover and install the capabilities it needs at runtime.

generic

Quick Start

bash
agentnode install dependency-audit-agent

Runs in a subprocess with filtered environment by default. Declared permissions are policy-checked, not sandboxed.

Usage

Generated template
python
from dependency_audit_agent.agent import run

result = run()
print(result)

Runs locally on your machine. No execution data is sent to AgentNode. Permissions are checked before execution. Learn how this works

AAgent Configuration

Tier

LLM + Tools

Goal

Audit dependencies by scanning for CVEs, checking versions, and detecting leaked secrets.

Agent Behavior

description only
You are a software supply chain security auditor.
Scan project dependencies for known vulnerabilities (CVEs), detect
outdated packages, check for leaked secrets in configuration, and
produce a prioritized remediation report.

Tool Access

code-refactor-packsecret-scanner-packweb-search-pack

Limits

Max Iterations

10

Max Tool Calls

50

Max Runtime

300s

Isolation

thread

Verification

high confidence100/100★ Gold Verified
smokeAgent executed successfully
+20/20
importAgent entrypoint imported successfully
+15/15
installInstalled in 1.7s
+15/15
contractAll contract checks passed
+15/15
manifestAgent manifest completeness
+10/10
determinismOutput consistency check
+10/10
reliability3/3 runs passed
+15/15

Agent installs and imports correctly. runtime checks passed. 2/2 verification cases passed. manifest completeness 10/10.

install1.7s
import81ms
smoke125ms

This package was executed and validated by AgentNode before listing. Install, import, and runtime checks passed.

Python 3.12.3ffmpegpopplertesseractuv

Last verified 14d ago· Runner v2.0.0

Version History

Capabilities

dependency_auditdependency_audittool

Scan project dependencies for vulnerabilities, outdated versions, and leaked secrets.

Input Schema

{
  "type": "object",
  "required": [
    "goal"
  ],
  "properties": {
    "goal": {
      "type": "string",
      "description": "The objective for the agent"
    }
  }
}

Output Schema

{
  "type": "object",
  "properties": {
    "done": {
      "type": "boolean"
    },
    "result": {
      "type": "object"
    }
  }
}

Permissions

Declared by the publisher. Checked before execution by the policy gate.

Networkunrestricted
Filesystemworkspace_read
Code Executionnone
Data Accessinput_only
User Approvalnever

Permissions are policy-checked before execution. Network and filesystem access are not sandboxed at runtime. Learn more

Privacy

All tool execution happens locally on your machine. AgentNode never receives:

  • • Tool inputs or outputs
  • • Execution logs
  • • Data your agent processes

Only install events and search queries are sent to the registry.

bash
agentnode install dependency-audit-agent

Files (4)

License

MIT

Stats

Downloads0
Installs0
Versionv2.1.2
Published4/28/2026
Channelstable
Typeagent
Entrypointdependency_audit_agent.agent

Compatibility

Frameworks

generic

Runtime

python

Python Version

>=3.10

Trust & Security

PublisherTrusted
SignatureNone
ProvenanceNone
Security Issues1

Publisher

A

AgentNode

@agentnode