Skip to content

skills

by trailofbits

Trail of Bits Claude Code skills for security research, vulnerability detection, and audit workflows

About

Trail of Bits Claude Code skills for security research, vulnerability detection, and audit workflows

5,377
Stars
163
Skill Files
476
Forks
110
PRs Merged
30
Contributors
19
Issues Open
11
Issues Closed
2026-05-05
Last Activity

Skill Analysis

188
Avg Lines / Skill
941
Avg Words / Skill
987
Code Blocks
752
Total Files
4.19 MB
Repo Size
161
Reference Files
Skill lines15 min / 126 median / 796 max
Code languagesbash, c, cmake, conf, cpp, dockerfile, func, go, javascript, json, makefile, markdown, mermaid, php, powershell, proverif, python, ruby, rust, scheme, sh, solidity, text, toml, typescript, yaml, yara
Frontmatter keysallowed-tools, argument-hint, color, consolidated, covers, description, disable-model-invocation, gate, kind, model, name, tools, type
Has CLAUDE.mdYes
Has LicenseYes
File typesmd (546), json (53), py (41), sh (29), yaml (10), bats (10), toml (8), yml (5), ql (5), yar (5)

Skills (174)

  • trailofbits:variants
    19 lines71 words

    Finds similar vulnerabilities using pattern-based analysis

  • variant-analysis
    143 lines818 words1 blocks

    Find similar vulnerabilities and bugs across codebases using pattern-based analysis. Use when hunting bug variants, building CodeQL/Semgrep queries, a...

    bash
  • modern-python
    334 lines1431 words11 blocks

    Configures Python projects with modern tooling (uv, ruff, ty). Use when creating projects, writing standalone scripts, or migrating from pip/Poetry/my...

    bashmakefiletoml
  • seatbelt-sandboxer
    309 lines1450 words14 blocks

    "Generates minimal macOS Seatbelt sandbox configurations. Use when sandboxing, isolating, or restricting macOS applications with allowlist-based profi...

    bashscheme
  • harness-writing
    615 lines2735 words28 blocks

    >

    bashcppgorusttoml
  • libafl
    626 lines1914 words47 blocks

    >

    bashccmakerusttoml
  • fuzzing-dictionary
    298 lines1362 words14 blocks

    >

    bashconftext
  • wycheproof
    534 lines2462 words12 blocks

    >

    bashjavascriptjsonpythontext
  • aflpp
    630 lines2717 words39 blocks

    >

    bashctext
  • coverage-analysis
    608 lines2549 words32 blocks

    >

    bashcmakecpp
  • cargo-fuzz
    455 lines1464 words30 blocks

    >

    bashrusttexttoml
  • fuzzing-obstacles
    427 lines2037 words14 blocks

    >

    bashcrust
  • address-sanitizer
    342 lines1417 words17 blocks

    >

    bashtoml
  • testing-handbook-generator
    373 lines1856 words10 blocks

    >

    markdown
  • ossfuzz
    427 lines1870 words17 blocks

    >

    bashcdockerfilepythonyaml
  • constant-time-testing
    508 lines2522 words9 blocks

    >

    bashc
  • libfuzzer
    796 lines2999 words58 blocks

    >

    bashccmakeconf
  • atheris
    516 lines1641 words25 blocks

    >

    bashdockerfilepython
  • ruzzy
    444 lines1443 words23 blocks

    >

    bashruby
  • draw
    45 lines223 words3 blocks

    Draw 4 Tarot cards and return a 1-2 sentence reading. Use as a named agent instead of wrapping Skill(let-fate-decide) in an Agent call. Callers get ju...

    bash

Recent Commits

-336 contributions across all repos
MayJunJulAugSepOctNovDecJanFebMarAprMay
Less
More
  • a56045e2026-05-05
    fix: correct duplicate section numbering in solana-vulnerability-scanner (#160)
    Leon.C
  • 870955f2026-05-03
    C review (#156)
    Paweł Płatek
  • 540111a2026-04-29
    Add adversarial-modeler agent to differential-review (#84)
    Dan Guido
  • 5f0a7652026-04-29
    Add sharp-edges-analyzer agent to sharp-edges (#81)
    Dan Guido
  • 48bd2622026-04-29
    Refresh trailmark skills for public Trailmark 0.2.x (#153)
    Scott Arciszewski
  • cad5abd2026-04-29
    Sync skill with claude-code-devcontainer repo (#151)
    dm
  • debfb292026-04-28
    Fix `allowed-tools` to use spec-compliant space-delimited strings (#139)
    Jonathan Hefner
  • 38793f62026-04-28
    fix(gh-cli): exit 0 when CLAUDE_ENV_FILE is unset (#135)
    David Maynor
  • e8cc5ba2026-04-16
    ci: run plugin Python test suites (catches the PR #125 regression) (#147)
    tob-joe
  • 1efb11a2026-04-15
    let-fate-decide: add missing import (#144)
    Scott Arciszewski