← Back to Skills Marketplace
sky-lv

Skylv Package Updater

by SKY-lv · GitHub ↗ · v1.0.0 · MIT-0
cross-platform ✓ Security Clean
45
Downloads
0
Stars
1
Active Installs
1
Versions
Install in OpenClaw
/install skylv-package-updater
Description
Auto-checks and updates outdated dependencies. Shows changelogs and breaking changes before updating. Triggers: update dependencies, upgrade packages, check...
README (SKILL.md)

Dependency Updater

Overview

Scans project dependencies and checks for updates, shows changelogs, identifies breaking changes.

When to Use

  • User asks to "update dependencies" or "check for updates"
  • Regular maintenance

How It Works

Step 1: Detect package manager

package.json -> npm pyproject.toml -> pip Cargo.toml -> cargo go.mod -> go

Step 2: Check outdated

npm: npm outdated --json pip: pip list --outdated --format=json cargo: cargo outdated

Step 3: Risk assessment

Patch (1.2.3 -> 1.2.4): Low risk - auto-update Minor (1.2.3 -> 1.3.0): Medium - show changelog Major (1.2.3 -> 2.0.0): High - show breaking changes

Output Format

Major Updates: express 4.17.1 -> 5.0.0 [BREAKING changes] Minor Updates: axios 0.21.1 -> 0.21.4 [Bug fixes] Patch Updates: debug 4.3.1 -> 4.3.4 [Security patch]

Update Strategy

  1. Show report first - never update blindly
  2. Update in stages: patches -> minors -> majors
  3. Run tests after each update
  4. Commit each update separately
Usage Guidance
This skill appears safe for its intended use, but install it only if you want an agent to inspect and potentially update project dependencies. Run it on a branch, review changelogs and breaking changes, and approve updates before files are changed or commits are created.
Capability Analysis
Type: OpenClaw Skill Name: skylv-package-updater Version: 1.0.0 The skill is a standard dependency management utility designed to identify and update outdated packages across various ecosystems (npm, pip, cargo, go). The instructions in SKILL.md follow best practices, such as performing risk assessments, reporting changes to the user before execution, and running tests after updates. No indicators of data exfiltration, malicious execution, or prompt injection were found.
Capability Assessment
Purpose & Capability
The stated purpose is dependency maintenance, and the instructions align with that purpose. The capability is still sensitive because updating dependencies can alter project behavior.
Instruction Scope
The workflow includes safeguards such as showing a report first, staging updates, and running tests, but the phrase 'auto-update' for patch releases means users should ensure approval is required before changes are applied.
Install Mechanism
This is instruction-only with no install spec or code files. The metadata declares no required binaries, while the instructions reference npm, pip, cargo, and go-style project detection, so the runtime tool requirements are not fully represented in metadata.
Credentials
Package-manager checks and test runs are proportionate to the skill's purpose, but they may execute local project scripts or contact package registries.
Persistence & Privilege
The instruction to commit each update separately creates persistent repository changes, which is purpose-aligned and reversible if done on a branch.
How to Use
  1. Make sure OpenClaw is installed (local or Docker)
  2. Run the install command in chat: /install skylv-package-updater
  3. After installation, invoke the skill by name or use /skylv-package-updater
  4. Provide required inputs per the skill's parameter spec and get structured output
Version History
v1.0.0
- Initial release of skylv-dependency-updater (version 1.0.0). - Automatically checks for and updates outdated project dependencies. - Supports npm, pip, cargo, and go dependency management. - Shows changelogs and highlights breaking changes before performing updates. - Updates are staged by patch, minor, and major levels, with risk assessment for each. - Users can trigger updates or checks with commands like "update dependencies" or "check outdated."
Metadata
Slug skylv-package-updater
Version 1.0.0
License MIT-0
All-time Installs 1
Active Installs 1
Total Versions 1
Frequently Asked Questions

What is Skylv Package Updater?

Auto-checks and updates outdated dependencies. Shows changelogs and breaking changes before updating. Triggers: update dependencies, upgrade packages, check... It is an AI Agent Skill for Claude Code / OpenClaw, with 45 downloads so far.

How do I install Skylv Package Updater?

Run "/install skylv-package-updater" in the OpenClaw or Claude Code chat to install it in one step — no extra setup required.

Is Skylv Package Updater free?

Yes, Skylv Package Updater is completely free, licensed under MIT-0. You can download, install and use it at no cost.

Which platforms does Skylv Package Updater support?

Skylv Package Updater is cross-platform and runs anywhere OpenClaw / Claude Code is available (cross-platform).

Who created Skylv Package Updater?

It is built and maintained by SKY-lv (@sky-lv); the current version is v1.0.0.

💬 Comments