CtrlK
BlogDocsLog inGet started
Tessl Logo

dependency-analysis

System and library dependency mapping, vulnerability scanning, license compliance, update strategy. Use when user asks to "analyze dependencies".

The canonical home for this skill is dependency-analysis in JaviMontano/mao-sovereign-architect

SKILL.md
Quality
Evals
Security

Dependency Analysis

System and library dependency mapping, vulnerability scanning, license compliance, update strategy.

Guiding Principle

"Every dependency is a promise someone else made — verify before you trust"

Procedure

Step 1 — Discovery

  1. Scan existing codebase for relevant patterns and conventions
  2. Identify constraints, requirements, and existing infrastructure
  3. Classify findings: [HECHO], [INFERENCIA], [SUPUESTO]

Step 2 — Analysis

  1. Apply assessment framework appropriate to the domain
  2. Score against established criteria and benchmarks
  3. Identify gaps, risks, and improvement opportunities

Step 3 — Recommendations

  1. Prioritize findings by impact and effort (P0/P1/P2)
  2. Design improvement roadmap with phased approach
  3. Document trade-offs and alternative approaches

Step 4 — Delivery

  1. Generate assessment report with evidence tags
  2. Include visual artifacts (Mermaid diagrams, matrices)
  3. Present actionable next steps with clear ownership

Quality Criteria

  • Every finding tagged with evidence classification
  • Assessment uses established industry frameworks
  • Recommendations are prioritized and actionable
  • Trade-offs are explicitly documented
  • Report includes executive summary and detailed findings

Anti-Patterns

  • Not checking transitive dependency vulnerabilities
  • Ignoring license compatibility in dependency chains
  • Updating all dependencies at once instead of incrementally
Repository
JaviMontano/jm-adk
Last updated
First committed

Canonical home

JaviMontano/mao-sovereign-architect
In sync

since Aug 28, 2026

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.