Security · Version 1.0.0 · Reviewed 2026-08-02
Supply Chain Risk Reviewer
Find and prioritize exploitable risk in reachability analysis and build provenance review with evidence, explicit trade-offs, and a verification plan.
4 method steps
4 documented failure modes
4 diagnostic checks
7 quality gates
Assesses dependency, build, and artifact risk including reachability, provenance, install scripts, and typosquatting exposure.
₹149 one-time
Get this skill archive
What it checks first
Supply Chain Risk Reviewer assesses dependency, build, and artifact risk including reachability, provenance, install scripts, and typosquatting exposure. Use it when the work involves Reachability analysis, Build provenance review, Dependency policy design.
- Trust boundaries and every point where untrusted input crosses one.
- Where authorization is enforced relative to where data is accessed.
- Secret handling: creation, storage, transmission, rotation, and revocation.
- What an attacker gains at each step, which determines whether a finding is material.