Loading...
Loading...
Activate when reviewing or modifying dependency resolution, lockfile schema, package downloaders, signature/integrity checks, file integration cleanup, or anything that could expose APM to dependency confusion, typosquatting, malicious packages, or token leakage.
npx skill4agent add microsoft/apm supply-chain-securitysrc/apm_cli/deps/src/apm_cli/core/auth.pytoken_manager.pysrc/apm_cli/integration/cleanup.pyapm.locksrc/apm_cli/utils/path_security.py".." in xintegration/cleanup.py:remove_stale_deployed_files()AuthResolveros.getenv