trailofbits-variant-analysis
Trail of Bits security skill to find similar vulnerabilities across a codebase via pattern analysis.
🛡️ AgentReady threat assessment
MAESTRO 7-layer threat model + OWASP AIVSS risk score for trailofbits-variant-analysis, derived from its capabilities.
These scores are auto-generated from public information (the agent's own listing, docs, and repository) using the canonical OWASP AIVSS formula and the MAESTRO framework — an estimate for guidance, not a penetration test, audit, or certification. See the scoring methodology — every score is re-derived by the same automated method as an agent's public evidence changes.
Overview
Security skill that hunts for variants of a known bug across a codebase using pattern-based analysis, building CodeQL/Semgrep queries as needed. Runs queries and analyzes results; a core audit-workflow skill.
Key features and capabilities
- Bug-variant hunting
- CodeQL/Semgrep query building
- Codebase-wide pattern search
Use cases
- Finding all instances of a bug class
- Security audit sweeps