# Auditing Foundry Smart Contract Security (agent skill)

> Auditing Foundry Smart Contract Security is an agent skill (a SKILL.md file) from tradecatlabs/vibe-coding-cn. Pre-deployment security audit of Solidity smart contracts in a Foundry project. It works with Claude Code, Codex, Cursor, Gemini CLI, GitHub Copilot and OpenCode and has 17,171 GitHub stars across a repository of 5 listed skills.

Pre-deployment security audit of Solidity smart contracts in a Foundry project. Combines static analysis (Slither, Aderyn), symbolic execution (Mythril), and property-based testing (forge fuzz + invariant tests with handlers) to catch reentrancy, access-control, oracle/price manipulation, and arithmetic bugs BEFORE deploying to an EVM chain. Also enforces key hygiene (no plaintext private keys, encrypted cast keystore) and a secure deploy workflow.

## Key facts

| Fact | Value |
|---|---|
| Repository | https://github.com/tradecatlabs/vibe-coding-cn |
| Skill path | research/vibe-cybersecurity-cn/skills/smart-contract-audit/auditing-foundry-smart-contract-security/SKILL.md |
| Skill name | auditing-foundry-smart-contract-security |
| GitHub stars | 17,171 |
| Installs on skills.sh | not listed |
| License | MIT |
| Skills in repo | 5 |
| Plugin marketplace | no |
| Official | no |
| Works with | Claude Code, Codex, Cursor, Gemini CLI, GitHub Copilot, OpenCode |
| Category | Security |
| Last commit | Oct 1, 2026 |

## When it triggers

- Use when writing, reviewing, testing, or deploying Solidity/Foundry contracts, building a dApp, or working with forge/cast/anvil, MetaMask, or Web3/DeFi code.

## Add this skill

### Claude Code

```sh
git clone --depth 1 https://github.com/tradecatlabs/vibe-coding-cn.git
cp -r vibe-coding-cn/research/vibe-cybersecurity-cn/skills/smart-contract-audit/auditing-foundry-smart-contract-security ~/.claude/skills/auditing-foundry-smart-contract-security   # personal, or .claude/skills in a project
```

In the Claude apps, zip the skill folder and upload it under Customize > Skills > + > Upload a skill (code execution must be on).

### ChatGPT / Codex

```sh
git clone --depth 1 https://github.com/tradecatlabs/vibe-coding-cn.git
cp -r vibe-coding-cn/research/vibe-cybersecurity-cn/skills/smart-contract-audit/auditing-foundry-smart-contract-security .agents/skills/auditing-foundry-smart-contract-security   # repo; ~/.agents/skills for all projects
```

### Cursor

```sh
git clone --depth 1 https://github.com/tradecatlabs/vibe-coding-cn.git
cp -r vibe-coding-cn/research/vibe-cybersecurity-cn/skills/smart-contract-audit/auditing-foundry-smart-contract-security .cursor/skills/auditing-foundry-smart-contract-security   # project; ~/.cursor/skills for all projects
```

Sources (checked 2026-10-07): https://code.claude.com/docs/en/skills, https://support.claude.com/en/articles/12512180-using-skills-in-claude, https://learn.chatgpt.com/docs/build-skills, https://cursor.com/docs/context/skills

---

Canonical page: https://appsgit.com/skills/tradecatlabs-auditing-foundry-smart-contract-security
Source: appsgit (https://appsgit.com), the app store for github. Data from the GitHub API, refreshed nightly.
Machine access: JSON API https://appsgit.com/api/v1/apps (OpenAPI: https://appsgit.com/openapi.json), MCP server https://mcp.appsgit.com/mcp, full index https://appsgit.com/llms-full.txt.
