solana-cpi-safety-skill
Audit and harden Solana programs against four CPI vulnerability classes.
Audit and harden Solana programs against four CPI vulnerability classes.
Scan Solana code for return-data spoofing, arbitrary program invocation, stale account state after CPI, and unsafe PDA signing. The skill routes findings to Anchor or native Pinocchio guidance, explains the exploit path, and proposes concrete remediations through an audit command and dedicated agent. Runnable LiteSVM proof-of-concept suites demonstrate vulnerable, defended, and positive-control cases, with especially detailed coverage of spoofed CPI return data.
Resource types
Use cases
Platforms
Capabilities
Audit suspension risks in a Claude Code working environment.
Check whether a specific CVE actually applies to your environment.
Public GitHub facts last synced Jul 10, 2026.
Store and inject development secrets through 1Password from Claude Code.
Audit a deployed public app for production gaps missed during coding.