Algorand Vulnerability Scanner skill: what it does and how to install it
Scans Algorand smart contracts for rekeying, transaction field, access control and other platform-specific security vulnerabilities.
Summary generated from the skill's documentation.
Install
$ npx skills add trailofbits/skills --skill algorand-vulnerability-scannerRun it in a terminal. If your agent is already running, start a new session so it picks the skill up.
About this skill
What it does. Searches TEAL and PyTeal projects, identifies contract types, checks 11 Algorand vulnerability patterns and can run Tealer for automated detection. It reports a complete coverage table, file-level findings with severity and attack scenarios, and recommended fixes.
When to use it. For auditing, reviewing or validating fixes in Algorand stateful applications and smart signatures. It covers patterns including rekeying, unchecked fees, account and asset closing, replay protection, access controls, inner transactions and clear-state handling.
History
Repo stars
7.4kAbout +216 since 9 Jul 2026
Before 1 Oct 2026 the curve is estimated from public event data.
Stars are counted for the whole repository, which holds 49 skills.
Show as a table
| Date | Repo stars |
|---|---|
| 5 Oct 2026 | 7,370 |
| 4 Oct 2026 | 7,355 |
| 3 Oct 2026 | 7,348 |
| 2 Oct 2026 | 7,340 |
| 1 Oct 2026 | 7,320 |
| 24 Sept 2026 (estimated) | 7,310 |
| 17 Sept 2026 (estimated) | 7,305 |
| 10 Sept 2026 (estimated) | 7,239 |
| 3 Sept 2026 (estimated) | 7,179 |
| 27 Aug 2026 (estimated) | 7,174 |
| 20 Aug 2026 (estimated) | 7,174 |
| 13 Aug 2026 (estimated) | 7,169 |
| 6 Aug 2026 (estimated) | 7,164 |
| 30 Jul 2026 (estimated) | 7,164 |
| 23 Jul 2026 (estimated) | 7,164 |
| 16 Jul 2026 (estimated) | 7,164 |
| 9 Jul 2026 (estimated) | 7,154 |
Installs
4.9k
Tracking since . A chart appears once there are 7 days of data.
Installs via skills.sh
Similar skills
- CodeQLScans a codebase for security vulnerabilities with CodeQL's data flow and taint tracking analysis.
- Security and HardeningAudits and hardens code that handles user input, authentication, data storage or external integrations against common vulnerabilities.
- Constant Time AnalysisDetects timing side-channel vulnerabilities in cryptographic code written in C, C++, Go and other languages.