
Sonatype Guide
by sonatype1dae73980f59No licenseListed Oct 8, 2026Updated Oct 8, 2026
MUST use before installing, adding, or upgrading any dependency. Trigger when: running pip install, npm install, cargo add, go get, or any package manager command; adding a package to requirements.txt, package.json, pyproject.toml, Cargo.toml, go.mod, pom.xml, build.gradle, or Gemfile; choosing which library to use for a task; upgrading or changing dependency versions; or auditing existing dependencies. Uses the Sonatype Guide MCP server to check vulnerabilities, Developer Trust Scores, license risks, malicious package detection, and policy compliance. Do not install or recommend a dependency without checking it here first.
Only the file list is public. File contents are available once the skill is installed in a workspace.
| Path | Size | Type |
|---|---|---|
| references/purl-ecosystems.md | 3 KB | text/markdown |
| SKILL.md | 10.8 KB | text/markdown |
Source and attribution
Source:sonatype/sonatype-guide-claude-plugininskills/sonatype-guideat commit1dae739
License: No license
Content belongs to its original authors. SourceWeft indexes it from a public repository.