hound_audit
Scan project lockfiles to detect dependency vulnerabilities. Parses multiple lockfile formats and queries OSV for risks across all dependencies.
Instructions
Scan a project's lockfile for dependency risks. Parses package-lock.json, yarn.lock, pnpm-lock.yaml, requirements.txt, Cargo.lock, go.sum, or Gemfile.lock and batch-queries OSV for vulnerabilities across all dependencies.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| lockfile_name | Yes | Filename to determine format: package-lock.json, yarn.lock, pnpm-lock.yaml, requirements.txt, Cargo.lock, go.sum, Gemfile.lock | |
| lockfile_content | Yes | Full text content of the lockfile |