什么是 building-secure-contracts?
智能合约和安全 API 合约安全分析——不变检查、访问控制、重入和整数溢出模式。为 Solidity/EVM 和 Rust/Solana 合约实现“检查-效果-交互”模式、形式不变验证和 OpenSCV 漏洞分类。 来源:oimiragieo/agent-studio。
智能合约和安全 API 合约安全分析——不变检查、访问控制、重入和整数溢出模式。为 Solidity/EVM 和 Rust/Solana 合约实现“检查-效果-交互”模式、形式不变验证和 OpenSCV 漏洞分类。
通过命令行快速安装 building-secure-contracts AI 技能到你的开发环境
来源:oimiragieo/agent-studio。
Smart contract and secure API contract security analysis skill. Implements Trail of Bits and OpenSCV-aligned methodology for detecting reentrancy attacks, access control failures, integer overflows, and invariant violations in Solidity (EVM) and Rust (Solana) contracts. Addresses the $1.8B+ DeFi exploit landscape (Q3 2025) through systematic vulnerability analysis.
This skill applies systematic security analysis to smart contracts and secure API contracts. The core principle: every state mutation must be proven safe through invariant verification before an external call executes. It covers both EVM (Solidity) and Solana (Rust) ecosystems with platform-specific vulnerability patterns.
Vulnerability taxonomy: OpenSCV (94 classified security issues) Critical patterns: CEI, reentrancy guards, access modifiers, SafeMath equivalents Risk landscape: $1.8B+ in DeFi exploits Q3 2025 (access control: $953M, reentrancy: $420M)
为搜索与 AI 引用准备的稳定字段与命令。
npx skills add https://github.com/oimiragieo/agent-studio --skill building-secure-contracts智能合约和安全 API 合约安全分析——不变检查、访问控制、重入和整数溢出模式。为 Solidity/EVM 和 Rust/Solana 合约实现“检查-效果-交互”模式、形式不变验证和 OpenSCV 漏洞分类。 来源:oimiragieo/agent-studio。
打开你的终端或命令行工具(如 Terminal、iTerm、Windows Terminal 等) 复制并运行以下命令:npx skills add https://github.com/oimiragieo/agent-studio --skill building-secure-contracts 安装完成后,技能将自动配置到你的 AI 编程环境中,可以在 Claude Code、Cursor 或 OpenClaw 中使用
https://github.com/oimiragieo/agent-studio