Install a full repository package, then let your agent activate the right skill for the task.
Ask your agent
Prompt
Fetch this Markdown manifest as plain text: https://skillscout.sh/official/trailofbits/trailofbits_skills_skillscout.md. If your browser cannot display the Markdown directly, use curl or another text fetcher. Recommend the relevant Trail Of Bits skills package or packages for my goal, explain which individual skills matter, and wait for my approval. After I approve, install with the npx command. If no project is open, install it as an agent skill I can use later.
Covers address-sanitizer, aflpp, agentic-actions-auditor, algorand-vulnerability-scanner, atheris, audit-augmentation. A structured analysis skill for the pre-audit phase of code review. Searches and extracts data from Burp Suite project files (.
Scans Android APKs for Firebase security misconfigurations by decompiling the app, extracting Firebase configuration, and actively testing endpoints for vulnerabilities.