Browse
Showing 20 of 124 components
Scans Cairo/StarkNet smart contracts for 6 critical vulnerabilities including felt252 arithmetic overflow, L1-L2 messagi...
Token integration and implementation analyzer based on Trail of Bits' token integration checklist. Analyzes token implem...
Smart contract development advisor based on Trail of Bits' best practices. Analyzes codebase to generate documentation/s...
Scans Algorand smart contracts for 11 common vulnerabilities including rekeying attacks, unchecked transaction fees, mis...
Official HashiCorp skill set for Terraform, Vault, Packer, and HCL workflows, providing infrastructure-as-code guidance...
Domain-specific skills for scientific computing covering bioinformatics, genomics, chemistry, and drug discovery workflo...
Scans codebases for exposed secrets, API keys, credentials, and sensitive data.
Claude Code skill for generating production-quality SVG and PNG technical diagrams from natural language system descript...
Automated code review skill with security and quality checks.
Codebase analysis skill that generates knowledge graphs and visual dependency maps to help understand unfamiliar reposit...
Scans Android APKs for Firebase security misconfigurations including open databases, storage buckets, authentication iss...
Analyzes smart contract codebases to identify state-changing entry points for security auditing. Detects externally call...
Detects fail-open insecure defaults (hardcoded secrets, weak auth, permissive security) that allow apps to run insecurel...
Systematic code refactoring with clean code patterns, design patterns, and complexity reduction.
Enables ultra-granular, line-by-line code analysis to build deep architectural context before vulnerability or bug findi...
Systematically verifies suspected security bugs to eliminate false positives. Produces TRUE POSITIVE or FALSE POSITIVE v...
Two-pass revision that removes AI writing patterns for natural, human-like prose.
Provides guidance for property-based testing across multiple languages and smart contracts. Use when writing tests, revi...
Configures mewt or muton mutation testing campaigns — scopes targets, tunes timeouts, and optimizes long-running runs. U...
Creates language variants of existing Semgrep rules. Use when porting a Semgrep rule to specified target languages. Take...