Skip to main content
solana-vulnerability-scannerby Trail of BitsDevelopmentGitHub stars: 7.4k

Solana Vulnerability Scanner skill: what it does and how to install it

Scans native Solana and Anchor programs for security flaws in CPI calls, PDA validation, account checks, sysvars and instruction introspection.

Summary generated from the skill's documentation.

Install

$ npx skills add trailofbits/skills --skill solana-vulnerability-scanner

Run it in a terminal. If your agent is already running, start a new session so it picks the skill up.

About this skill

What it does. Identifies Solana or Anchor programs, then checks six vulnerability patterns covering cross-program invocations, PDAs, account ownership and signers, sysvars, and instruction introspection. Reports a verdict for every pattern, with evidence, severity and suggested fixes for findings.

When to use it. For security reviews of Solana programs, CPI logic, PDA implementations and account validation, including pre-launch assessments.

History

Repo stars

7.4kAbout +216 since 9 Jul 2026

Before 1 Oct 2026 the curve is estimated from public event data.

Stars are counted for the whole repository, which holds 49 skills.

Show as a table
Repo stars by day
DateRepo stars
5 Oct 20267,370
4 Oct 20267,355
3 Oct 20267,348
2 Oct 20267,340
1 Oct 20267,320
24 Sept 2026 (estimated)7,310
17 Sept 2026 (estimated)7,305
10 Sept 2026 (estimated)7,239
3 Sept 2026 (estimated)7,179
27 Aug 2026 (estimated)7,174
20 Aug 2026 (estimated)7,174
13 Aug 2026 (estimated)7,169
6 Aug 2026 (estimated)7,164
30 Jul 2026 (estimated)7,164
23 Jul 2026 (estimated)7,164
16 Jul 2026 (estimated)7,164
9 Jul 2026 (estimated)7,154

Installs

5.3k

Tracking since . A chart appears once there are 7 days of data.

Installs via skills.sh

Similar skills