agentic-actions-audito…
Audits GitHub Actions workflows for security vulnerabilities in AI agent integrations including Claude Code Action, Gemini CLI, OpenAI Codex, and GitHub AI…
Generates an interactive HTML walkthrough for reviewing code changes. Use only when explicitly called.
$ npx -y skills add trailofbits/skills --skill review-walkthrough --agent claude-codeHow it fires
How this skill gets triggered: by you, by Claude, or both.
/review-walkthroughContext preview
The summary Claude sees to decide when to auto-load this skill.
Generates an interactive HTML walkthrough for reviewing code changes. Use only when explicitly called.
name: review-walkthrough description: Generates an interactive HTML walkthrough for reviewing code changes. Use only when explicitly called. disable-model-invocation: true
Generate a self-contained HTML walkthrough of the current branch, with the final diff split into logical steps, explanations, and critical review findings. Choose the grouping and reading order for comprehension; commit order need not dictate either. Invoke as `/review-walkthrough:review-walkthrough` in Claude Code or `$review-walkthrough` in Codex.
Respect a user-specified base. Otherwise, use the current open PR's base when PR metadata is available. Without a PR, discover the repository's default branch from `git symbolic-ref --quiet --short refs/remotes/origin/HEAD` or the configured remote's equivalent. Do not assume it is `main`. If the selected base is missing or ambiguous, ask for it rather than silently choosing another branch.
Resolve the base and `HEAD` to commit IDs with `git rev-parse --verify --end-of-options "${ref}^{commit}"`, then compute their merge base with `git merge-base`. Capture the complete patch using `git diff --no-ext-diff --no-textconv --no-color --src-prefix=a/ --dst-prefix=b/ "$merge_base" "$head_sha" --`. Initialize variables and run the commands that consume them in the same shell invocation; shell variables do not persist between tool calls. Save the patch to a temporary file outside the checkout and retain its actual path. Stop on a Git error or an empty patch and explain the result.
This scope includes committed changes through the captured `HEAD`. Mention any uncommitted work that is excluded. Do not change branches, reset the checkout, or alter source files to prepare the review. Keep generated data and HTML outside the checkout unless the user requests a particular output location; generated review artifacts never belong in the captured patch.
For a GitHub PR, collect `owner`, `repo`, `pr_number`, and `head_sha` from its metadata. Include them only when the PR head matches the captured `HEAD` and the chosen base matches the PR base. Otherwise use `null` and explain why comment export is unavailable. A failed authentication or network request is not evidence that no PR exists; report the failure and ask for the base if it cannot be determined. GitHub access is optional when the user supplies the base or confirms there is no PR.
Read the changed files and the surrounding source, tests, configuration, and dependency metadata needed to judge them. Keep the review read-only; do not run the project's tests or install its dependencies merely to build the walkthrough.
Group related files into steps covering one concept each. Put definitions before their consumers, wiring after the components it connects, and tests after or beside their subjects. Copy each complete per-file diff from the captured patch verbatim into exactly one step. Reordering files between steps is allowed; splitting, rewriting, omitting, or inventing their patches is not. Preserve rename, binary, and mode-change entries even when they have no text hunks. Binary summaries identify changed files; their payloads are outside this review.
Write one explanation per step, usually 50–150 words, covering the change's purpose, design choices, trade-offs, and connections to other steps. Refer to actual identifiers. Write one review list per step covering bugs, security, validation, API design, or performance issues supported by the code. Report findings with severity rather than suppressing minor issues. Use an empty list for a step with no findings.
Explanations and review bodies are HTML fragments. Use `<p>`, `<strong>`, `<em>`, `<code>`, `<pre>`, and `<ul>`/`<li>` for structure. Write literal `<` and `>` in prose or snippets as `<` and `>`. Backticks and Markdown fences are literal text here. Supported inline tags also include `<sup>`, `<sub>`, `<kbd>`, `<del>`, and `<a href="https://…">`. The page sanitizes fragments and converts them to Markdown when preparing a PR comment. Only safe link targets survive; arbitrary attributes, scripts, and images do not. Tables export as text rows with cell separators; captions and row order are preserved. Prefer prose, lists, and code blocks when their structure is sufficient.
Anchor findings to a file in the same step and a line in that file's displayed diff. Use `side: "RIGHT"` for additions or new-file context and `side: "LEFT"` for deletions or old-file context. For a range, `line` and `end_line` use that same side within one hunk. A finding spanning multiple steps belongs with the file it addresses, or remains unanchored. An unanchored finding is still displayed but cannot become an inline PR comment.
Use a file-writing tool to create a JSON object with the fields below. Preserve the literal patch as JSON string data, with no shell expansion.
| Field | Value | |-------|-------| | `title` | Feature or review title | | `steps` | Array of objects with `sha` (step ID such as `step-1`), `message` (step title), `files` (paths in patch order), and `diff` (complete per-file patches) | | `explanations` | HTML strings, one per step | | `reviews` | Arrays of findings, one per step; each finding has `severity` (`high`, `medium`, or `low`), `title`, and HTML `body` | | `pr_meta` | Object with `owner`, `repo`, `pr_number`, and `head_sha`, or `null` |
An anchored finding also has `file`, `line`, and `side`, plus optional `end_line`. The three arrays have equal lengths and corresponding entries. File paths match the diff headers without their `a/` or `b/` prefix; a renamed file uses its new path. Set `side` explicitly so lines that occur on both sides are unambiguous.
Run the bundled renderer with the actual paths created for this review:
uv run --no-project {baseDir}/scripts/render_walkthrough.py \
--input /tmp/data.json \
--diff /tmp/captured.patch \
--output /tmp/wA Claude Code plugin marketplace from Trail of Bits providing skills to enhance AI-assisted security analysis, testing, and development workflows. Codex can load this marketplace through its Claude marketplace compatibility.
Audits GitHub Actions workflows for security vulnerabilities in AI agent integrations including Claude Code Action, Gemini CLI, OpenAI Codex, and GitHub AI…
Understand a codebase before looking for bugs in it - what each function assumes, what it guarantees, and what it depends on elsewhere. Use when starting an…
Scans Algorand smart contracts for 11 common vulnerabilities including rekeying attacks, unchecked transaction fees, missing field validations, and access…
Prepares codebases for security review using Trail of Bits' checklist. Helps set review goals, runs static analysis tools, increases test coverage, removes…
Scans Cairo/StarkNet smart contracts for 6 critical vulnerabilities including felt252 arithmetic overflow, L1-L2 messaging issues, address conversion problems,…
Systematic code maturity assessment using Trail of Bits' 9-category framework. Analyzes codebase for arithmetic safety, auditing practices, access controls,…