Select, alter, and audit third-party dependencies with advisory scans, target-scoped vulnerability assessments, and deep recon/OSINT.