Skip to main content
Source repository

trailofbits/skills

These skills were imported into SkillJury from the public skills ecosystem.

61 linked skillsVisit source
Source listing

61 imported skills

trailofbits/skills/Software Engineering

dimensional-analysis

This skill orchestrates a dimensional-analysis pipeline for codebases that perform numeric computations with mixed units, precisions, or scaling factors. The main skill context is a workflow controller only: it delegates scanning, vocabulary discovery, annotation, propagation, and validation to specialized subagents,...

Weekly installs
809
Community vote
0
0 up / 0 down
Freshness
Synced May 1, 2026
Software EngineeringFrontend and DesignNo reviews yetSource trailofbits/skills
trailofbits/skills/Software Engineering

ask-questions-if-underspecified

Ask clarifying questions before implementing when requirements are ambiguous or incomplete.

Weekly installs
3
Community vote
0
0 up / 0 down
Freshness
Synced May 1, 2026
Software EngineeringFrontend and DesignNo reviews yetSource trailofbits/skills
trailofbits/skills/Software Engineering

modern-python

Modern Python project setup with uv, ruff, and ty for Python 3.11+.

Weekly installs
3
Community vote
0
0 up / 0 down
Freshness
Synced May 1, 2026
Software EngineeringFrontend and DesignNo reviews yetSource trailofbits/skills
trailofbits/skills/Software Engineering

semgrep

Parallel static analysis scanner with automatic language detection, Pro cross-file taint tracking, and merged SARIF output.

Weekly installs
3
Community vote
0
0 up / 0 down
Freshness
Synced May 1, 2026
Software EngineeringFrontend and DesignNo reviews yetSource trailofbits/skills
trailofbits/skills/Software Engineering

agentic-actions-auditor

Static security analysis for GitHub Actions workflows invoking AI coding agents.

Weekly installs
2
Community vote
0
0 up / 0 down
Freshness
Synced May 1, 2026
Software EngineeringFrontend and DesignNo reviews yetSource trailofbits/skills
trailofbits/skills/Software Engineering

audit-context-building

Ultra-granular, line-by-line code analysis to build stable architectural context before vulnerability discovery.

Weekly installs
2
Community vote
0
0 up / 0 down
Freshness
Synced May 1, 2026
Software EngineeringFrontend and DesignNo reviews yetSource trailofbits/skills
trailofbits/skills/Software Engineering

audit-prep-assistant

Prepares codebases for security audits using Trail of Bits' checklist across four structured phases.

Weekly installs
2
Community vote
0
0 up / 0 down
Freshness
Synced May 1, 2026
Software EngineeringFrontend and DesignNo reviews yetSource trailofbits/skills
trailofbits/skills/Software Engineering

code-maturity-assessor

Systematic code maturity evaluation across 9 security and engineering categories with evidence-based ratings.

Weekly installs
2
Community vote
0
0 up / 0 down
Freshness
Synced May 1, 2026
Software EngineeringFrontend and DesignNo reviews yetSource trailofbits/skills
trailofbits/skills/Software Engineering

codeql

Interprocedural security vulnerability scanning with data flow analysis and customizable query suites.

Weekly installs
2
Community vote
0
0 up / 0 down
Freshness
Synced May 1, 2026
Software EngineeringFrontend and DesignNo reviews yetSource trailofbits/skills
trailofbits/skills/Software Engineering

coverage-analysis

Measure code exercised during fuzzing to assess harness effectiveness and identify blockers.

Weekly installs
2
Community vote
0
0 up / 0 down
Freshness
Synced May 1, 2026
Software EngineeringFrontend and DesignNo reviews yetSource trailofbits/skills
trailofbits/skills/Software Engineering

differential-review

Security-focused differential analysis of code changes with adaptive depth, blast radius calculation, and markdown reporting.

Weekly installs
2
Community vote
0
0 up / 0 down
Freshness
Synced May 1, 2026
Software EngineeringFrontend and DesignNo reviews yetSource trailofbits/skills
trailofbits/skills/Software Engineering

entry-point-analyzer

Smart contract entry point detector for security audit surface mapping.

Weekly installs
2
Community vote
0
0 up / 0 down
Freshness
Synced May 1, 2026
Software EngineeringFrontend and DesignNo reviews yetSource trailofbits/skills
trailofbits/skills/Software Engineering

fp-check

Systematically verify suspected security bugs and classify them as true or false positives with documented evidence.

Weekly installs
2
Community vote
0
0 up / 0 down
Freshness
Synced May 1, 2026
Software EngineeringFrontend and DesignNo reviews yetSource trailofbits/skills
trailofbits/skills/Software Engineering

fuzzing-obstacles

Patch code to bypass checksums, global state, and validation barriers that block fuzzer progress.

Weekly installs
2
Community vote
0
0 up / 0 down
Freshness
Synced May 1, 2026
Software EngineeringFrontend and DesignNo reviews yetSource trailofbits/skills
trailofbits/skills/Software Engineering

guidelines-advisor

Smart contract development advisor applying Trail of Bits' security and design guidelines to analyze codebases systematically.

Weekly installs
2
Community vote
0
0 up / 0 down
Freshness
Synced May 1, 2026
Software EngineeringFrontend and DesignNo reviews yetSource trailofbits/skills
trailofbits/skills/Software Engineering

insecure-defaults

Detects fail-open security vulnerabilities where applications run insecurely with missing or weak default configuration.

Weekly installs
2
Community vote
0
0 up / 0 down
Freshness
Synced May 1, 2026
Software EngineeringFrontend and DesignNo reviews yetSource trailofbits/skills
trailofbits/skills/Software Engineering

property-based-testing

Guidance for property-based testing across languages and smart contracts.

Weekly installs
2
Community vote
0
0 up / 0 down
Freshness
Synced May 1, 2026
Software EngineeringFrontend and DesignNo reviews yetSource trailofbits/skills
trailofbits/skills/Software Engineering

sarif-parsing

Parse, filter, deduplicate, and aggregate SARIF files from static analysis tools.

Weekly installs
2
Community vote
0
0 up / 0 down
Freshness
Synced May 1, 2026
Software EngineeringFrontend and DesignNo reviews yetSource trailofbits/skills
trailofbits/skills/Software Engineering

secure-workflow-guide

Smart contract security review through Trail of Bits' 5-step workflow with automated scanning, visual analysis, and property documentation.

Weekly installs
2
Community vote
0
0 up / 0 down
Freshness
Synced May 1, 2026
Software EngineeringFrontend and DesignNo reviews yetSource trailofbits/skills
trailofbits/skills/Software Engineering

semgrep-rule-creator

Custom Semgrep rule creation with test-driven validation and AST-guided pattern development.

Weekly installs
2
Community vote
0
0 up / 0 down
Freshness
Synced May 1, 2026
Software EngineeringFrontend and DesignNo reviews yetSource trailofbits/skills
trailofbits/skills/Software Engineering

sharp-edges

Identifies error-prone APIs, configurations, and designs that enable developer security mistakes.

Weekly installs
2
Community vote
0
0 up / 0 down
Freshness
Synced May 1, 2026
Software EngineeringFrontend and DesignNo reviews yetSource trailofbits/skills
trailofbits/skills/Software Engineering

solana-vulnerability-scanner

Scans Solana programs for 6 critical vulnerabilities including arbitrary CPI, improper PDA validation, and missing security checks.

Weekly installs
2
Community vote
0
0 up / 0 down
Freshness
Synced May 1, 2026
Software EngineeringFrontend and DesignNo reviews yetSource trailofbits/skills
trailofbits/skills/Software Engineering

spec-to-code-compliance

Verifies code implements exactly what documentation specifies for blockchain audits.

Weekly installs
2
Community vote
0
0 up / 0 down
Freshness
Synced May 1, 2026
Software EngineeringFrontend and DesignNo reviews yetSource trailofbits/skills
trailofbits/skills/Software Engineering

supply-chain-risk-auditor

Identifies high-risk dependencies vulnerable to exploitation or takeover through systematic supply chain analysis.

Weekly installs
2
Community vote
0
0 up / 0 down
Freshness
Synced May 1, 2026
Software EngineeringFrontend and DesignNo reviews yetSource trailofbits/skills
Page 1 of 3