Skills

by trailofbits 6.3k CC-BY-SA-4.0 Updated Jul 30, 2026
Security Claude Code

Skills is an open-source security skill for Claude Code, published by trailofbits. Its author describes it as: “Trail of Bits Claude Code skills for security research, vulnerability detection, and audit workflows”. The project has 6.3k stars on GitHub and is available under the Creative Commons Attribution Share Alike 4.0 International license. Add it to your setup with `git clone https://github.com/trailofbits/skills ~/.claude/skills/skills`.

Installation

Add Skills to your agent with:

git clone https://github.com/trailofbits/skills ~/.claude/skills/skills

Always review a skill's source before installing it. This command comes from the skill's public repository; the linked repo is the source of truth for exact setup steps.

When to use it

Reach for Skills when you want security help from Claude Code without writing the same instructions every session. Load the skill and the agent picks it up automatically for relevant tasks.

Strengths

  • Clear Creative Commons Attribution Share Alike 4.0 International license — safe to read and adapt
  • Established project with 6,344 GitHub stars
  • Declares compatibility with Claude Code
  • Actively maintained (recent commits)

Topics

agent-skills

Related skills

More Security →

Ultra-high-performance, secure, all-in-one acceleration engine for developer resources

8.2k xixu-me AGPL-3.0

Agent skills for solving CTF challenges - web exploitation, binary pwn, crypto, reverse engineering, forensics, OSINT, and more

2.9k ljagiello MIT

A Claude Code skill bundle for bug hunting and external red-team work - 82 skills, 15 slash commands, 681 disclosed-report patterns curated across 24 core vulnerability classes, plus enterprise identity + infrastructure attack matrices.

3.2k elementalsouls No license

claude-red is a curated library of offensive security skills designed for the Claude skills system. Each skill is a structured SKILL.md file that primes Claude with expert-level methodology for a specific attack surface — from SQLi to shellcode, EDR evasion to exploit development.

2.8k SnailSploit MIT

State-of-the-Art (2026) AI/LLM engineering skills/agents for building and auditing software — 40+ domain & language skills, BUILD/AUDIT modes, audit checklists.

8 martinholovsky CC-BY-4.0