solana-vulnerability-scanner

📁 plurigrid/asi 📅 Jan 29, 2026
1
总安装量
1
周安装量
#53413
全站排名
安装命令
npx skills add https://github.com/plurigrid/asi --skill solana-vulnerability-scanner

Agent 安装分布

codex 1
claude-code 1

Skill 文档

Solana Vulnerability Scanner Skill

Trit: -1 (MINUS) Category: building-secure-contracts Author: Trail of Bits Source: trailofbits/skills License: AGPL-3.0

Description

Scans Solana programs for 6 critical vulnerabilities including arbitrary CPI, improper PDA validation, missing signer/ownership checks, and sysvar spoofing. Use when auditing Solana/Anchor programs. (project, gitignored)

When to Use

This is a Trail of Bits security skill. Refer to the original repository for detailed usage guidelines and examples.

See: https://github.com/trailofbits/skills

Related Skills

  • audit-context-building
  • codeql
  • semgrep
  • variant-analysis

SDF Interleaving

This skill connects to Software Design for Flexibility (Hanson & Sussman, 2021):

Primary Chapter: 3. Variations on an Arithmetic Theme

Concepts: generic arithmetic, coercion, symbolic, numeric

GF(3) Balanced Triad

solana-vulnerability-scanner (+) + SDF.Ch3 (○) + [balancer] (−) = 0

Skill Trit: 1 (PLUS – generation)

Connection Pattern

Generic arithmetic crosses type boundaries. This skill handles heterogeneous data.