trailofbits-supply-chain-risk-auditor
Trail of Bits skill identifying dependencies at heightened risk of takeover or exploitation.
🛡️ AgentReady threat assessment
MAESTRO 7-layer threat model + OWASP AIVSS risk score for trailofbits-supply-chain-risk-auditor, derived from its capabilities.
These scores are auto-generated from public information (the agent's own listing, docs, and repository) using the canonical OWASP AIVSS formula and the MAESTRO framework — an estimate for guidance, not a penetration test, audit, or certification. See the scoring methodology — every score is re-derived by the same automated method as an agent's public evidence changes.
Overview
Security skill that assesses supply-chain attack surface by identifying dependencies at heightened risk of exploitation or takeover and evaluating dependency health. Analyzes a project's dependency manifests as its input surface.
Key features and capabilities
- Dependency risk scoring
- Takeover-risk identification
- Supply-chain attack-surface mapping
Use cases
- Supply-chain security assessment
- Scoping security engagements