Sonatype — анализ уязвимостей в зависимостях

integrations

Sonatype is a Claude Code skill that connects the development environment to Sonatype for software composition analysis and open source risk management. Using the Membrane CLI, it lets you search components, work with repositories, and run arbitrary Sonatype API actions with automatic authentication and transparent credential refresh. For scenarios not covered by pre-built actions, the skill supports direct proxy requests via the membrane request command with full control over HTTP method, headers, and query parameters. It is designed for development and security teams who need to identify vulnerabilities and license issues in dependencies without leaving the terminal. A Membrane account is required (free tier supported), along with network access.