home/categories/smart-contracts/trailofbits-skills-plugins-building-secure-contracts-skills-solana-vulnerability-scanner-skill-md
smart-contractsblockchain

solana-vulnerability-scanner

Scans Solana programs for 6 critical vulnerabilities including arbitrary CPI, improper PDA validation, missing signer/ownership checks, and sysvar spoofing. Use when auditing Solana/Anchor programs.

trailofbits
maintainer
trailofbits
Updated 1/29/2026
Stars
4466
Forks
385
quick start

Installation and usage

Scans Solana programs for 6 critical vulnerabilities including arbitrary CPI, improper PDA validation, missing signer/ownership checks, and sysvar spoofing. Use when auditing Solana/Anchor programs.

Installation
$ install --globalskills.sh
Usage

Once installed, you can use this skill by running the following command in your terminal:

skills use solana-vulnerability-scanner