Your own copy of the Ambush bot that tells you when a security advisory touches a repo you watch, with the fix.
It listens to Ambush's Package Security Advisories stream, reads what each of your repos depends on from GitHub's dependency graph, checks the exact version with OSV.dev, and posts one message to Slack when a repo is hit.
The steps are in AGENTS.md. Follow them yourself, or hand them to a coding agent like Claude Code or Cursor: "read AGENTS.md and follow it". The same guide is on the bot's page in Ambush: Explore → Dependency Watch.
bun install
cp .env.example .env # then fill it in
bun run check # what GitHub says each repo uses
bun run dev # listens on :3000/ambushWhat each file does, and every setting, is in AGENTS.md.
MIT