vendor-risk-monitor
Continuous vendor security monitoring for security ratings, breach notifications, and risk change detection
npx skills add a5c-ai/babysitter --skill vendor-risk-monitor --agent claude-code
Same command for any agent — swap --agent for codex, cursor, copilot.
Weekly change comes from our own snapshots, not the repository page — it measures attention, not adoption.
# Vendor Risk Monitor Skill ## Purpose Provide continuous vendor security monitoring by tracking security ratings, monitoring breach notifications, detecting certificate issues, and alerting on risk changes for proactive third-party risk management. ## Capabilities ### Security Rating Monitoring - Track vendor security ratings from rating services - Monitor rating changes and trends - Compare ratings against thresholds - Analyze rating factor changes - Generate rating trend reports - Alert on rating downgrades ### Breach Notification Tracking - Monitor public breach databases - Track vendor-disclosed incidents - Correlate breaches with vendor inventory - Assess breach impact on data - Generate breach impact reports - Trigger incident response workflows ### Certificate Status Checking - Monitor vendor SSL/TLS certificates - Track certificate expiration dates - Detect certificate issues - Verify certificate chain validity - Alert on upcoming expirations - Check certificate transparency logs ### Dark Web Monitoring - Monitor dark web for vendor exposures - Detect leaked credentials - Identify data for sale - Track threat actor mentions - Correlate with vendor risk profiles - Generate
- Purpose
- Capabilities
- Security Rating Monitoring
- Breach Notification Tracking
- Certificate Status Checking
- Dark Web Monitoring
- Risk Change Alerting
- Monitoring Report Generation
- Monitoring Sources
- Risk Signals Monitored
- Integrations
- Target Processes
- Input Schema
- Output Schema
What does the vendor-risk-monitor skill do?
Continuous vendor security monitoring for security ratings, breach notifications, and risk change detection
How do I install it?
Run `npx skills add a5c-ai/babysitter --skill vendor-risk-monitor --agent claude-code` — it drops the skill into your project so the agent can pick it up. Swap the --agent value for codex, cursor or copilot if you use one of those.
Where does this skill come from?
From a5c-ai/babysitter, a repository with 1,642 stars. We read it straight from the repository tree rather than a submitted listing, so what you see here is what is actually published.
Is a popular skill a good skill?
Not necessarily. Stars measure attention, not adoption — a repository can trend for a week and be abandoned. That is why we show the weekly change from our own snapshots next to the total, instead of a single flattering number.
