Trailmark

trailofbits/skills/plugins/trailmark/skills/trailmark

by trailofbits82fe82262526No license7.4K starsListed Oct 8, 2026Updated Oct 8, 2026Repository updated yesterday

Builds and queries multi-language source and binary code graphs for security analysis. Includes pre-analysis passes for blast radius, taint propagation, privilege boundaries, entry point enumeration, proxy/unresolved-call tracking, type/reference queries, structural traversal, graph diffs, audit augmentation, declared cross-language/FFI/external links via `.trailmark/links.toml`, and SQL schema graphs. Use when analyzing call paths, mapping attack surface, finding complexity hotspots, enumerating entry points, tracing taint propagation, measuring blast radius, importing SARIF/weAudit/binary findings, linking source graphs across language or RPC boundaries, or building a code graph for audit prioritization. Feature-gate version-specific Trailmark APIs before using them; prefer `trailmark.parse.detect_languages()` or `--language auto` when the target language is unknown or polyglot.

Only the file list is public. File contents are available once the skill is installed in a workspace.

PathSizeType
agents/openai.yaml242 Bapplication/yaml
assets/trail-of-bits-mark.svg3 KBtext/plain
references/preanalysis-passes.md5.6 KBtext/markdown
references/query-patterns.md8.7 KBtext/markdown
SKILL.md17 KBtext/markdown

Source and attribution

Source:trailofbits/skillsinplugins/trailmark/skills/trailmarkat commit82fe822

License: No license

Content belongs to its original authors. SourceWeft indexes it from a public repository.

Report or request removal

Trailmark · plugins/trailmark/skills/trailmark Agent Skill | SourceWeft