Skip to main content
trailofbits
GitHub クリエイタープロフィール

trailofbits

10 件の GitHub リポジトリにある 135 件の収集済み skills をリポジトリ単位で表示します。

収集済み skills
135
リポジトリ
10
更新
2026年9月2日
リポジトリマップ

skills がある場所

収集済み skill 数が多いリポジトリを、このクリエイターカタログ内の比率と職業範囲とともに表示します。

ここでは上位 8 件のリポジトリを表示しています。完全なリストは下に続きます。
リポジトリエクスプローラー

リポジトリと代表的な skills

slicing-code-context
ソフトウェア開発者

Selects bounded, graph-informed source slices with Trailmark and delegates focused code analysis or patch-proposal work to a smaller subagent. Use when offloading function-, class-, caller-, callee-, call-path-, entrypoint-, or line-focused code tasks to…

2026年9月2日
yara-rule-authoring
情報セキュリティアナリスト

Guides authoring of high-quality YARA-X detection rules for malware identification. Use when writing, reviewing, or optimizing YARA rules. Covers naming conventions, string selection, performance optimization, migration from legacy YARA, and false positive…

2026年9月2日
burpsuite-project-parser
未分類

Searches and explores Burp Suite project files (.burp) from the command line. Use when searching response headers or bodies with regex patterns, extracting security audit findings, dumping proxy history or site map data, or analyzing HTTP traffic captured in…

2026年9月1日
second-opinion
未分類

Runs external LLM code reviews (OpenAI Codex or Google Antigravity CLI) on uncommitted changes, branch diffs, or specific commits. Use when the user asks for a second opinion, external review, codex review, gemini review, antigravity review, or mentions…

2026年9月1日
vulnerability-triage-brocards
未分類

This skill should be used when the user asks to "triage a vulnerability report", "assess a CVE", "evaluate a bug bounty submission", "decide if a finding is valid", "review a security finding", "dismiss a vulnerability", "should we fix this CVE", "prioritize…

2026年9月1日
algorand-vulnerability-scanner
未分類

Scans Algorand smart contracts for 11 common vulnerabilities including rekeying attacks, unchecked transaction fees, missing field validations, and access control issues. Use when auditing Algorand projects (TEAL/PyTeal).

2026年8月31日
cairo-vulnerability-scanner
未分類

Scans Cairo/StarkNet smart contracts for 6 critical vulnerabilities including felt252 arithmetic overflow, L1-L2 messaging issues, address conversion problems, and signature replay. Use when auditing StarkNet projects.

2026年8月31日
solana-vulnerability-scanner
未分類

Scans Solana programs for 6 critical vulnerabilities including arbitrary CPI, improper PDA validation, missing signer/ownership checks, and sysvar spoofing. Use when auditing Solana/Anchor programs.

2026年8月31日
収集済み skill 83 件中 8 件を表示しています。
grilling
プロジェクト管理専門家

Interviews the user relentlessly about a plan, decision, or idea until every branch of the decision tree is resolved. Use when the user wants to stress-test their thinking, sharpen a plan or design before acting, or uses any 'grill' trigger phrase (e.g.…

2026年7月14日
handoff
ソフトウェア開発者

Compacts the current conversation into a handoff document so a fresh agent can continue the work in a new session.

2026年7月14日
teach
その他の高等教育教員

Teaches the user a new skill or concept over multiple sessions, using the current directory as a stateful teaching workspace with lessons, learning records, and reference materials.

2026年7月14日
writing-great-skills
その他コンピュータ職

Reference for writing and editing agent skills well — the vocabulary and principles that make a skill predictable. Consult when authoring, reviewing, or pruning a SKILL.md.

2026年7月14日
humanizer
編集者

Remove signs of AI-generated writing from text. Use when editing or reviewing text to make it sound more natural and human-written. Based on Wikipedia's comprehensive "Signs of AI writing" guide. Detects and fixes patterns including: inflated symbolism,…

2026年2月23日
ffuf-web-fuzzing
情報セキュリティアナリスト

Expert guidance for ffuf web fuzzing during authorized penetration testing. Covers directory discovery, subdomain enumeration, parameter fuzzing, authenticated fuzzing with raw requests, auto-calibration, and result analysis. Use when running ffuf scans,…

2026年2月23日
planning-with-files
ソフトウェア開発者

Implements file-based planning for complex multi-step tasks. Creates task_plan.md, findings.md, and progress.md as persistent working memory. Use when starting tasks requiring >5 tool calls, multi-phase projects, research, or any work where losing track of…

2026年2月23日
skill-extractor
その他コンピュータ職

Extracts reusable skills from work sessions. Use when: (1) a non-obvious problem was solved worth preserving, (2) a pattern was discovered that would help future sessions, (3) a workaround or debugging technique needs documentation. Manual invocation only via…

2026年2月23日
収集済み skill 31 件中 8 件を表示しています。
development-standards
未分類

Apply implementation standards only when a task requires changes to code, tests, dependencies, build configuration, shell scripts, or CI. Do not invoke for diagnosis or advice without code changes, documentation-only work, or chat.

2026年9月1日
fix-github-issue
未分類

Implement a GitHub issue end to end: research, branch, code, verify, review, push, open a pull request, and update the issue. Use when asked to fix or implement a specific GitHub issue.

2026年9月1日
install-codex-config
未分類

Install or update this organization's Codex configuration from repo-local files into the user's Codex home. Use when asked to set up, install, update, bootstrap, or sync this Codex configuration, including the global AGENTS template, config.toml, hooks,…

2026年9月1日
merge-dependabot-prs
未分類

Discover, evaluate, and optionally merge open Dependabot pull requests with dependency-aware ordering and post-merge verification. Use when asked to process or merge Dependabot PRs for a repository.

2026年9月1日
review-and-fix-pr
未分類

Review a specific GitHub pull request, consolidate findings, fix P1-P3 issues, verify the changes, push a fix commit, and post a summary. Use when asked to review and fix a PR by number.

2026年9月1日
security-research-hygiene
未分類

Apply finding hygiene during authorized security audits, vulnerability research, fuzzing, exploit validation, and triage. Do not use for ordinary secure coding, generic code review, or unapproved target testing.

2026年9月1日
technical-writing
未分類

Write or revise durable technical prose such as READMEs, reports, findings, runbooks, design notes, and pull-request descriptions. Do not use for ordinary chat replies or code-only changes.

2026年9月1日
10 件中 10 件のリポジトリを表示
すべてのリポジトリを表示しました