Testing & QA
Trail of Bits Security Skills
Security-audit skills from Trail of Bits covering static analysis with CodeQL/Semgrep, variant analysis, and vulnerability detection.
Trail of Bits’ security skills bring their own audit tooling — static analysis with CodeQL and Semgrep, variant analysis, and vulnerability pattern detection — into Claude Code.
Why a skill for this
Security auditing firms encode years of hard-won pattern knowledge into their tooling configs. Packaging that as a skill means Claude Code inherits Trail of Bits’ actual audit methodology instead of a generic security pass.
Good for
Codebases that want a serious static-analysis and vulnerability-pattern pass, not just a surface-level security review.