Skip to content
Change the repository type filter

All

    Repositories list

    • claude-code-config

      Public
      Opinionated defaults, documentation, and workflows for Claude Code at Trail of Bits
      Shell
      4771800Updated Feb 14, 2026Feb 14, 2026
    • vscode-weaudit

      Public
      Create code bookmarks and code highlights with a click.
      TypeScript
      28228146Updated Feb 14, 2026Feb 14, 2026
    • aifirst-insecure-agent-labs

      Public
      Python
      2304Updated Feb 13, 2026Feb 13, 2026
    • codeql

      Public
      CodeQL: the libraries and queries that power security researchers around the world, as well as code scanning in GitHub Advanced Security
      CodeQL
      1.9k103Updated Feb 13, 2026Feb 13, 2026
    • it-depends

      Public
      A tool to automatically build a dependency graph and Software Bill of Materials (SBOM) for packages and arbitrary source code repositories.
      Python
      22382122Updated Feb 13, 2026Feb 13, 2026
    • protofuzz

      Public
      Google Protocol Buffers message generator
      Python
      3628392Updated Feb 13, 2026Feb 13, 2026
    • blight

      Public
      A framework for instrumenting build tools
      Python
      790206Updated Feb 13, 2026Feb 13, 2026
    • mcp-context-protector

      Public
      MCP security wrapper
      Python
      1720655Updated Feb 13, 2026Feb 13, 2026
    • pylock-attestations

      Public
      CLI tool to add attestation identities to `pylock.toml` files
      Python
      1540Updated Feb 13, 2026Feb 13, 2026
    • cookiecutter-python

      Public
      A cookiecutter template for a best-practices Python project
      Python
      72902Updated Feb 13, 2026Feb 13, 2026
    • skills

      Public
      Trail of Bits Claude Code skills for security research, vulnerability detection, and audit workflows
      Python
      2122.6k53Updated Feb 13, 2026Feb 13, 2026
    • pajaMAS

      Public
      Multi-agent system (MAS) hijacking demos
      Python
      34034Updated Feb 13, 2026Feb 13, 2026
    • gh-action-adapt-sigstore-pypi

      Public
      Python
      0107Updated Feb 13, 2026Feb 13, 2026
    • irene3

      Public
      C++
      01014Updated Feb 13, 2026Feb 13, 2026
    • siderophile

      Public
      Find the ideal fuzz targets in a Rust codebase
      Rust
      132231213Updated Feb 13, 2026Feb 13, 2026
    • SARIF Explorer: A VSCode extension that helps you visualize and triage static analysis results
      TypeScript
      945616Updated Feb 13, 2026Feb 13, 2026
    • skills-curated

      Public
      Curated, community-vetted Claude Code plugin marketplace
      Python
      19900Updated Feb 13, 2026Feb 13, 2026
    • claude-code-devcontainer

      Public
      Sandboxed devcontainer for running Claude Code in bypass mode safely. Built for security audits and untrusted code review.
      Shell
      2734600Updated Feb 13, 2026Feb 13, 2026
    • cargo-unmaintained

      Public
      Find unmaintained packages in Rust projects
      Rust
      1385112Updated Feb 13, 2026Feb 13, 2026
    • codeql-queries

      Public
      CodeQL queries developed by Trail of Bits
      CodeQL
      714554Updated Feb 13, 2026Feb 13, 2026
    • checksec-anywhere

      Public
      Analyze binary security features instantly in your browser.
      Rust
      21761Updated Feb 13, 2026Feb 13, 2026
    • vscode-masm

      Public
      VS Code extension for the Miden assembly language
      TypeScript
      0400Updated Feb 13, 2026Feb 13, 2026
    • masm-lsp

      Public
      An LSP server for the Miden assembly language
      Rust
      1210Updated Feb 13, 2026Feb 13, 2026
    • vast

      Public
      VAST is an experimental compiler pipeline designed for program analysis of C and C++. It provides a tower of IRs as MLIR dialects to choose the best fit represe…
      C++
      324341683Updated Feb 13, 2026Feb 13, 2026
    • vendetect

      Public
      A tool to automatically detect copy+pasted and vendored code between repositories
      Python
      67423Updated Feb 13, 2026Feb 13, 2026
    • go-slh-dsa

      Public
      FIPS-205 / SLH-DSA (Stateless Hash-Based Digital Signature Algorithm)
      Go
      1800Updated Feb 13, 2026Feb 13, 2026
    • graphtage

      Public
      A semantic diff utility and library for tree-like files such as JSON, JSON5, XML, HTML, YAML, and CSV.
      Python
      542.5k208Updated Feb 13, 2026Feb 13, 2026
    • eatmynetwork

      Public
      A small script for running programs with (minimal) network sandboxing
      Shell
      25300Updated Feb 13, 2026Feb 13, 2026
    • maat

      Public
      Open-source symbolic execution framework: https://maat.re
      C++
      446482112Updated Feb 13, 2026Feb 13, 2026
    • LeftoverLocalsRelease

      Public
      The public release of LeftoverLocals code
      C++
      167210Updated Feb 13, 2026Feb 13, 2026