audit_dependencies
Audit Node.js project dependencies for security vulnerabilities with severity, CVSS scores, and dependency chains. Generates Markdown or HTML reports.
Instructions
Audit Node.js project dependencies for security vulnerabilities. Supports npm and pnpm projects, local or GitHub remote repos. Returns detailed vulnerability info (severity, CVSS score, dependency chains, fix suggestions) and generates Markdown/HTML report.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| projectPath | No | Local project path | |
| remoteRepo | No | Remote repo: github:owner/repo or https://github.com/owner/repo | |
| ref | No | Remote ref (branch / tag / commit SHA), default: main | |
| token | No | GitHub token (for private repos), or use GITHUB_TOKEN env var | |
| severity | No | Minimum severity level, default: low | |
| format | No | Report format, default: md | |
| outputPath | No | Report output file path |