home/categories/smart-contracts/trailofbits-skills-plugins-building-secure-contracts-skills-solana-vulnerability-scanner-skill-md
smart-contractsblockchain
solana-vulnerability-scanner
Scans Solana programs for 6 critical vulnerabilities including arbitrary CPI, improper PDA validation, missing signer/ownership checks, and sysvar spoofing. Use when auditing Solana/Anchor programs.
maintainer
trailofbits
Updated 1/29/2026
Stars
4466
Forks
385
quick start
Installation and usage
Scans Solana programs for 6 critical vulnerabilities including arbitrary CPI, improper PDA validation, missing signer/ownership checks, and sysvar spoofing. Use when auditing Solana/Anchor programs.
Installation
$ install --globalskills.sh
Usage
Once installed, you can use this skill by running the following command in your terminal:
skills use solana-vulnerability-scanner