Claude Codev0.2.4 · manifest
Review cryptographic timing assumptions and compiler-sensitive implementation behavior.
Source: trailofbits/skills
plugins/constant-time-analysis · Independent maintainer marketplace
Includes Composition not yet established — not zero components
Manifest observed; full component inventory, installed tools, provider access and task permissions remain unverified.
Matches this task · Manifest fields inspected · Not a runtime testClaude Codev3.0.1 · manifest
Check units and scaling assumptions in formulas and code annotations.
Source: trailofbits/skills
plugins/dimensional-analysis · Independent maintainer marketplace
Includes Composition not yet established — not zero components
Manifest observed; full component inventory, installed tools, provider access and task permissions remain unverified.
Matches this task · Manifest fields inspected · Not a runtime testClaude Codev1.0.3 · manifest
Plan mutation-testing targets, timeouts and campaign scope; runners are not installed here.
Source: trailofbits/skills
plugins/mutation-testing · Independent maintainer marketplace
Includes Composition not yet established — not zero components
Manifest observed; full component inventory, installed tools, provider access and task permissions remain unverified.
Matches this task · Manifest fields inspected · Not a runtime testClaude Codev1.2.0 · manifest
Design tests around invariants and input domains, and distinguish them from UI or binary fuzz testing.
Source: trailofbits/skills
plugins/property-based-testing · Independent maintainer marketplace
Includes 1+ sampled skill
Manifest observed; full component inventory, installed tools, provider access and task permissions remain unverified.
Matches this task · Manifest fields inspected · Not a runtime testClaude Codev1.2.4 · manifest
Draft and test Semgrep detection rules for a stated code pattern.
Source: trailofbits/skills
plugins/semgrep-rule-creator · Independent maintainer marketplace
Includes Composition not yet established — not zero components
Manifest observed; full component inventory, installed tools, provider access and task permissions remain unverified.
Matches this task · Manifest fields inspected · Not a runtime testClaude Codev1.1.1 · manifest
Assess how a detection rule should change for another programming language.
Source: trailofbits/skills
plugins/semgrep-rule-variant-creator · Independent maintainer marketplace
Includes Composition not yet established — not zero components
Manifest observed; full component inventory, installed tools, provider access and task permissions remain unverified.
Matches this task · Manifest fields inspected · Not a runtime testClaude Codev2.0.0 · manifest
Compare a stated specification with implementation evidence and track disagreements.
Source: trailofbits/skills
plugins/spec-to-code-compliance · Independent maintainer marketplace
Includes Composition not yet established — not zero components
Manifest observed; full component inventory, installed tools, provider access and task permissions remain unverified.
Matches this task · Manifest fields inspected · Not a runtime testClaude Codev1.2.0 · manifest
Explore application-testing handbook workflows; the full bundled inventory has not been enumerated.
Source: trailofbits/skills
plugins/testing-handbook-skills · Independent maintainer marketplace
Includes Composition not yet established — not zero components
Manifest observed; full component inventory, installed tools, provider access and task permissions remain unverified.
Matches this task · Manifest fields inspected · Not a runtime testClaude Codev0.1.0 · manifest
Find Lean proof-authoring and library-structure guidance for a formal verification task.
Source: trailofbits/skills
plugins/writing-lean-proofs · Independent maintainer marketplace
Includes Composition not yet established — not zero components
Manifest observed; full component inventory, installed tools, provider access and task permissions remain unverified.
Matches this task · Manifest fields inspected · Not a runtime testClaude Codev0.3.1 · manifest
Review whether sensitive-data clearing survives compilation in the relevant code path.
Source: trailofbits/skills
plugins/zeroize-audit · Independent maintainer marketplace
Includes Composition not yet established — not zero components
Manifest observed; full component inventory, installed tools, provider access and task permissions remain unverified.
Matches this task · Manifest fields inspected · Not a runtime test