Claude Code plugin that integrates Google's OSV Scanner for dependency vulnerability detection. Scans project dependencies for known CVEs across multiple ecosystems including npm, pip, Go, Rust, Maven, and Ruby. Performs grep-based static analysis for reachability triage, categorizing findings into FOUND_IN_SOURCE, UNCERTAIN, and NOT_FOUND_IN_GREP tiers to prioritize remediation efforts.
Cognium trust score
50%
Tier
Unverified
Composite of vulnerability cleanliness, spec conformance, provenance, stability, and usage signals — scanned and weighted by Cognium. Human and agent signals are tracked separately.
Returns 7 tools: search_skills, get_skill, list_leaderboard, get_trust_breakdown, resolve_composition, plus the ChatGPT-connector search and fetch. Every tool is annotated read-only.
Resolve this skill directly via MCP tools/call get_skill.