Orchestrate Stage
seqra/opentaint
Run one stage of the OpenTaint pipeline by coordinating leaf subagents and deterministic joins.
Use in every Trail of Bits Skills workspace inside Harness, before any audit skill — the findings.json format the report pane is built from, which Trail of Bits skill serves which audit phase, and…
$ npx skills add autonomous-ai/openharness --skill trailofbits-harness -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install autonomous-ai/openharness trailofbits-harness --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/autonomous-ai/openharness.git skills-src && mkdir -p .claude/skills && cp -r skills-src/store/agents/trailofbits-skills/skills/trailofbits-harness .claude/skills/trailofbits-harness && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "trailofbits-harness" agent skill from https://github.com/autonomous-ai/openharness/tree/main/store/agents/trailofbits-skills/skills/trailofbits-harness into .claude/skills/trailofbits-harness/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "trailofbits-harness", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/autonomous-ai/openharness/tree/main/store/agents/trailofbits-skills/skills/trailofbits-harnessType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add autonomous-ai/openharness --skill trailofbits-harness -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install autonomous-ai/openharness trailofbits-harness --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/autonomous-ai/openharness.git skills-src && mkdir -p .agents/skills && cp -r skills-src/store/agents/trailofbits-skills/skills/trailofbits-harness .agents/skills/trailofbits-harness && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "trailofbits-harness" agent skill from https://github.com/autonomous-ai/openharness/tree/main/store/agents/trailofbits-skills/skills/trailofbits-harness into .agents/skills/trailofbits-harness/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "trailofbits-harness", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add autonomous-ai/openharness --skill trailofbits-harness -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install autonomous-ai/openharness trailofbits-harness --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/autonomous-ai/openharness.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/store/agents/trailofbits-skills/skills/trailofbits-harness .cursor/skills/trailofbits-harness && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "trailofbits-harness" agent skill from https://github.com/autonomous-ai/openharness/tree/main/store/agents/trailofbits-skills/skills/trailofbits-harness into .cursor/skills/trailofbits-harness/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "trailofbits-harness", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/autonomous-ai/openharness.git --path store/agents/trailofbits-skills/skills/trailofbits-harness--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add autonomous-ai/openharness --skill trailofbits-harness -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install autonomous-ai/openharness trailofbits-harness --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/autonomous-ai/openharness.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/store/agents/trailofbits-skills/skills/trailofbits-harness .gemini/skills/trailofbits-harness && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "trailofbits-harness" agent skill from https://github.com/autonomous-ai/openharness/tree/main/store/agents/trailofbits-skills/skills/trailofbits-harness into .gemini/skills/trailofbits-harness/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "trailofbits-harness", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install autonomous-ai/openharness trailofbits-harnessInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add autonomous-ai/openharness --skill trailofbits-harness -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/autonomous-ai/openharness.git skills-src && mkdir -p .github/skills && cp -r skills-src/store/agents/trailofbits-skills/skills/trailofbits-harness .github/skills/trailofbits-harness && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "trailofbits-harness" agent skill from https://github.com/autonomous-ai/openharness/tree/main/store/agents/trailofbits-skills/skills/trailofbits-harness into .github/skills/trailofbits-harness/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "trailofbits-harness", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add autonomous-ai/openharness --skill trailofbits-harness -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install autonomous-ai/openharness trailofbits-harness --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/autonomous-ai/openharness.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/store/agents/trailofbits-skills/skills/trailofbits-harness .opencode/skills/trailofbits-harness && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "trailofbits-harness" agent skill from https://github.com/autonomous-ai/openharness/tree/main/store/agents/trailofbits-skills/skills/trailofbits-harness into .opencode/skills/trailofbits-harness/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "trailofbits-harness", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
trailofbits-harnessUse in every Trail of Bits Skills workspace inside Harness, before any audit skill — the findings.json format the report pane is built from, which Trail of Bits skill serves which audit phase, and…
Trailofbits Harness is an agent skill from autonomous-ai/openharness. Use in every Trail of Bits Skills workspace inside Harness, before any audit skill — the findings.json format the report pane is built from, which Trail of Bits skill serves which audit phase, and how their plugin features (plugin root, named sub-agents, Workflow scripts, fp-check's gates) work when their skills are linked rather than installed as plugins.
Its SKILL.md is about 1.5k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.
It sits in Security, covering Subagents. The repository describes itself as: The ultimate harness for coding agents and beyond. All your agents. All your machines. One command center. Start with code, then follow your curiosity and build across… The licence is MIT.
Read from SKILL.md and the folder at commit 50da5db. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Shell commands in SKILL.md call:
semgrepFrom the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Trailofbits Harness loads about 1.5k tokens when it runs. Until then it costs about 95 tokens; SKILL.md has 600 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from autonomous-ai/openharness at commit 50da5db, republished under its MIT licence (© autonomous-ai). 600 words, ~1,451 tokens.
.claude/skills/trailofbits-harness/SKILL.md (or your agent's skills folder).Trail of Bits' skills are the method; this skill only says how their work lands in the report pane and how the plugin features they assume are provided here. It changes none of their instructions.
security-audit/findings.json is the one file you edit. "$TOB_REPORT" checks it, rebuilds the
pane and the Markdown report from it, and prints every entry it had to leave out and why — fix those
before moving on.
{
"spec": 1,
"target": { "name": "shop-api", "path": ".", "commit": "3f2c9a1…", "scope": ["src/", "api/"] },
"phase": "review",
"final": false,
"summary": "Markdown: what was audited, how, and the headline risks.",
"findings": [
{
"id": "F-1",
"title": "SQL query built from request input",
"severity": "high",
"status": "unverified",
"category": "injection",
"source": "static-analysis/semgrep",
"location": [{ "file": "src/db.py", "line": 42 }],
"description": "Markdown: what is wrong.",
"evidence": "Markdown: the data flow, the rule that fired, the fp-check verdict and its reasons.",
"recommendation": "Markdown: how to fix it."
}
]
}phase: scope → context → scan → review → verify → report. The header's strip is this.severity: high, medium, low, informational, undetermined — Trail of Bits' own scale.status: unverified when found, then confirmed or false-positive after fp-check. False
positives stay in the file (the report lists them as dismissed, with their evidence).id: F-1, F-2, … in the order found; never reuse one. Paths are relative to the target.- lists, code, fenced code, bold and italics — nothing else.
Everything is escaped, so quoting hostile strings from the code is safe.ready in the header) only when final is true and nothing is unverified.| Phase | Trail of Bits skill (plugin) | When |
|---|---|---|
| context | audit-context-building | always first: understand before hunting |
| scan | semgrep, codeql when installed, sarif-parsing (static-analysis) | always |
| scan | supply-chain-risk-auditor | a lockfile or manifest is present |
| scan | sharp-edges | APIs, configuration and defaults that invite misuse |
| scan | agentic-actions-auditor | .github/workflows/ exists |
| scan | c-review / rust-review | C/C++ / Rust code in scope |
| review | vulnerability-triage-brocards | triage each candidate before deep work |
| review | variant-analysis | a confirmed bug suggests siblings elsewhere |
| review | differential-review | the person asks about a change, branch or PR |
| verify | fp-check | every finding, before it is confirmed |
Turn each skill's output — SARIF, ledgers, reports — into findings.json entries, citing it in
source.
These skills were written as Claude Code plugins. Harness links their skills into every agent, so the plugin machinery they mention is provided like this:
${CLAUDE_PLUGIN_ROOT}, ${CODEX_PLUGIN_ROOT} or
<plugin_root>, it is $TOB_SKILLS/plugins/<plugin> for the plugin the skill belongs to. Set it
on the command that needs it — CLAUDE_PLUGIN_ROOT="$TOB_SKILLS/plugins/c-review" … — and use
that path, not a search: a search of . would find copies inside the audited repository.<plugin>:<agent> (fp-check:poc-builder,
rust-review:rust-review-worker, audit-context-building:function-analyzer), start a sub-agent
with your own sub-agent tool and give it $TOB_SKILLS/plugins/<plugin>/agents/<agent>.md as its
instructions, plus the task the skill describes. Hold it to the tools that file's front matter
lists. Where the skill runs several in parallel, run them in parallel./<plugin>:<command> that a skill mentions is a Markdown file,
$TOB_SKILLS/plugins/<plugin>/commands/<command>.md (/differential-review:diff-review): read
it and follow it, with the arguments the person gave.Workflow tool with a
script under <plugin_root>/workflows/, or a command such as /audit-context-building:audit-context
that is backed by one, call Workflow with the absolute scriptPath
($TOB_SKILLS/plugins/<plugin>/workflows/<name>.js) and the arguments the skill documents. An
agent without a Workflow tool follows the skill's single-unit mode over each unit in scope and
says so in the report's summary.confirmed or
false-positive, read the two prompts in $TOB_SKILLS/plugins/fp-check/hooks/hooks.json and
check your own work against them; a gap keeps the finding unverified.The Semgrep, pip-audit, uv and Python the skills expect are in $TOB_BIN; put it first on each
command's PATH: PATH="$TOB_BIN:$PATH" semgrep --metrics=off …. CodeQL and ripgrep are optional
here; when they are missing, the skills' own fallbacks apply (toolchain/doctor.sh in the package
says which are present).
© autonomous-ai, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
Just SKILL.md in store/agents/trailofbits-skills/skills/trailofbits-harness of autonomous-ai/openharness.
Open the folder on GitHubat commit 50da5db
Trailofbits Harness next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Trailofbits Harness this skillautonomous-ai/openharness | 1.1k | — | ~1.5k | Automated safety check: Pass | MIT | |
| Orchestrate Stageseqra/opentaint | 162 | — | ~806 | Automated safety check: Pass | Apache-2.0 | |
| Figma From Code Discovery Assetsbitovi/ai-enablement-prompts | 121 | — | ~1.4k | Automated safety check: Pass | MIT | |
| Vulnhunter Runnealbridges/VulnHunter | 646 | — | ~711 | Automated safety check: Pass | Apache-2.0 | |
| Vbs Scan Securitytanviet12/vbsec | 287 | — | ~6.8k | Automated safety check: Notes | MIT | |
| Security AuditorArchethect/sc-auditor | 127 | — | ~5.9k | Automated safety check: Notes | None |
seqra/opentaint
Run one stage of the OpenTaint pipeline by coordinating leaf subagents and deterministic joins.
bitovi/ai-enablement-prompts
Subagent for figma-from-code Phase 0b. An agent skill from bitovi/ai-enablement-prompts.
nealbridges/VulnHunter
Unattended VulnHunter operator. An agent skill from nealbridges/VulnHunter.
tanviet12/vbsec
A skill your agent uses when scanning code for security vulnerabilities.
Archethect/sc-auditor
Interactive smart contract security audit using Map-Hunt-Attack methodology with static analysis, parallel hunt lanes, skeptic-judge verification, and structured reporting.
backnotprop/plannotator
Audits outdated npm and Bun packages for supply chain integrity before bumping them, deferring risky ones and logging every decision.
autonomous-ai/openharness
Slices 3D mesh files into printer-profiled plain G-code through real slicer CLIs, with backend discovery, input inspection, dry runs and static validation.
autonomous-ai/openharness
Turns a home-automation request into standard, testable automations.yaml, run against Home Assistant Core's real triggers and verified with its own trace tool.
autonomous-ai/openharness
Turns a musical brief into LilyPond concert-pitch music, checked parts for each instrument and a playable practice pack.
autonomous-ai/openharness
Turns an STL and explicit printer and material requirements into compared OrcaSlicer plans, an editable 3MF project, checked G-code and a portable handoff.
autonomous-ai/openharness
Builds an editable DOCX report, a formula-driven XLSX workbook and a fresh LibreOffice PDF preview from one structured source file, then checks them together.
autonomous-ai/openharness
Dry-run, upload, and cautiously initiate local Bambu Lab print jobs from validated plain .gcode, using Bambu LAN FTPS/MQTT handoffs.
Categories
Use in every Trail of Bits Skills workspace inside Harness, before any audit skill — the findings.json format the report pane is built from, which Trail of Bits skill serves which audit phase, and…. Trailofbits Harness is an agent skill from autonomous-ai/openharness.json format the report pane is built from, which Trail of Bits skill serves which audit phase, and how their plugin features (plugin root, named sub-agents, Workflow scripts, fp-check's gates) work when their skills are linked rather than installed as plugins.
Trailofbits Harness fits situations like: tasks that involve Subagents.
Run `npx skills add autonomous-ai/openharness --skill trailofbits-harness -a claude-code`. Or copy the skill folder (store/agents/trailofbits-skills/skills/trailofbits-harness in autonomous-ai/openharness) into .claude/skills/trailofbits-harness in your project. Claude Code loads it when a task matches its description.
Run `npx skills add autonomous-ai/openharness --skill trailofbits-harness -a codex`. Or copy the skill folder (store/agents/trailofbits-skills/skills/trailofbits-harness in autonomous-ai/openharness) into .agents/skills/trailofbits-harness in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add autonomous-ai/openharness --skill trailofbits-harness -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/trailofbits-harness, .gemini/skills/trailofbits-harness, .github/skills/trailofbits-harness and .opencode/skills/trailofbits-harness in your project.
Going by SKILL.md and its folder, Trailofbits Harness needs the command-line tools its instructions call (semgrep). Our summary lists: Python 3.
SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Trailofbits Harness is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
About 1.5k tokens (SKILL.md is roughly 5.8k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
Skills that share tags, products or a category with Trailofbits Harness: Orchestrate Stage (seqra/opentaint, 162 stars), Figma From Code Discovery Assets (bitovi/ai-enablement-prompts, 121 stars), Vulnhunter Run (nealbridges/VulnHunter, 646 stars) and Vbs Scan Security (tanviet12/vbsec, 287 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
autonomous-ai (a GitHub organization) maintains it in autonomous-ai/openharness, which has 1,149 GitHub stars. The repository holds 100 skills in this directory. The repository was last updated on October 8, 2026.
Source: autonomous-ai/openharness on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.