install
source · Clone the upstream repo
git clone https://github.com/plurigrid/asi
Claude Code · Install into ~/.claude/skills/
T=$(mktemp -d) && git clone --depth=1 https://github.com/plurigrid/asi "$T" && mkdir -p ~/.claude/skills && cp -r "$T/skills/trailofbits-security" ~/.claude/skills/plurigrid-asi-trailofbits-security && rm -rf "$T"
manifest:
skills/trailofbits-security/SKILL.mdsource content
Trail of Bits Security Bundle
Provenance: Trail of Bits security research GF(3) Trit: -1 (MINUS) - Validation/Verification Mutual Awareness:
bundle (PLUS +1)k-dense-ai
Skills (43)
Static Analysis
- GitHub's semantic code analysiscodeql
- Fast pattern matchingsemgrep
- Custom rule authoringsemgrep-rule-creator
- SARIF report processingsarif-parsing
Fuzzing
- AFL++ coverage-guided fuzzingaflpp
- In-process fuzzinglibfuzzer
- LibAFL frameworklibafl
- Rust fuzzingcargo-fuzz
- Python fuzzingatheris
- Ruby fuzzingruzzy
- Google OSS-Fuzz integrationossfuzz
- Fuzzing harness designharness-writing
- Dictionary optimizationfuzzing-dictionary
- Overcoming blockersfuzzing-obstacles
Memory Safety
- ASan for C/C++address-sanitizer
- Timing side-channelsconstant-time-analysis
- CT verificationconstant-time-testing
Smart Contract Security
- Solana programssolana-vulnerability-scanner
- StarkNet contractscairo-vulnerability-scanner
- Algorand TEALalgorand-vulnerability-scanner
- Cosmos SDKcosmos-vulnerability-scanner
- Polkadot palletssubstrate-vulnerability-scanner
- TON contractston-vulnerability-scanner
- Move language fuzzingmove-smith-fuzzer
- Move program testingmove-fuzzing
- ERC20/721 compliancetoken-integration-analyzer
- Attack surface mappingentry-point-analyzer
Code Review
- Deep code analysisaudit-context-building
- Pre-audit preparationaudit-prep-assistant
- Diff security reviewdifferential-review
- Patch verificationfix-review
- Dangerous API detectionsharp-edges
- Codebase qualitycode-maturity-assessor
- Best practicesguidelines-advisor
- SDLC securitysecure-workflow-guide
- Spec verificationspec-to-code-compliance
Web Security
- Web app testingburp-suite
- Burp file analysisburpsuite-project-parser
Testing
- Hypothesis/QuickCheckproperty-based-testing
- Code coveragecoverage-analysis
- Crypto test vectorswycheproof
Mutual Awareness Protocol
{:bundle "trailofbits-security" :trit :minus :aware-of ["k-dense-ai"] :interface {:audit (fn [code] "Run static analysis + fuzzing") :validate (fn [data] "Check for injection/overflow") :verify (fn [claim] "Formal verification pathway")} :handoff-to "k-dense-ai" :handoff-trigger [:molecule-data :protein-sequence :scientific-computation]}
Usage
# Load bundle skill trailofbits-security # Cross-bundle workflow skill trailofbits-security -> k-dense-ai # Audit bioinformatics pipeline security