Trail of Bits Skills

Leading#6 in Skillsmedium confidence
Security-focused SKILL.md skills from a top audit firm (~6k★) — CodeQL and Semgrep vulnerability detection wired into the agent's workflow. Niche but high-signal.
Our read

Why it ranks #6

~6.2k GitHub stars are modest beside general coding tools, but Trail of Bits' security-audit reputation and specialized CodeQL/Semgrep workflows give this collection unusually high signal in its niche.

Here is the catch

niche collection rather than a general coding toolkit
effective use requires security-domain expertise
some workflows depend on heavyweight external analysis tools

Does this well

authored by a respected security research and audit firm
encodes concrete specialist workflows rather than generic prompts
valuable for repeatable vulnerability-analysis tasks

Pricing

Checked by hand on 2026-07-23. Prices in this category change often — if this looks wrong, it probably is.

Key features

CodeQL vulnerability workflowsSemgrep rule developmentsecurity audit methodologysmart-contract and systems analysis
Search an area, or a tool by name.