Ross ROSS = Recommend OSS · open-source software intelligence for agents

crytic/building-secure-contracts resource

Guidelines and training material to write secure smart contracts observed · 2026-08-28

github.com/crytic/building-secure-contracts · homepage · Solidity · AGPL-3.0 (copyleft) observed · 2026-08-28

Health v2 · maintenance only

57/100

  • Activity 77
  • Release rhythm 8
  • Longevity 100
How is this computed?

round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-03. Adoption (stars, forks) is never an input.

  • gap_med: n/a
  • age_days: 2427
  • days_rel: n/a
  • days_push: 142
  • n_releases_24m: 0

Full methodology

Adoption not part of the score

2481 stars · 389 forks observed · 2026-08-28

What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded

A Trail of Bits maintained collection of guidelines, best practices, and training material for developing secure smart contracts. It covers secure development workflows, EVM internals, common vulnerability examples across many chains, and tutorials for automated analysis tools like Echidna, Medusa, Slither, and Manticore.

Use cases

  • learn how to write secure smart contracts
  • fuzz test solidity contracts with echidna or medusa
  • find examples of common smart contract vulnerabilities
  • create an incident response plan for a blockchain project
  • understand EVM opcodes and transaction tracing
  • checklist for integrating arbitrary tokens safely
  • evaluate the security maturity of a smart contract codebase

When to choose

  • you are developing or auditing Ethereum/EVM smart contracts and want security best practices
  • you need hands-on tutorials for Trail of Bits analysis tools like Echidna, Medusa, Slither, or Manticore
  • you want vulnerability examples for chains beyond Ethereum such as Solana, Cosmos, or TON

When to avoid

  • you need an executable security tool rather than documentation and training material
  • your project is not blockchain or smart-contract related
  • you need formal verification guarantees rather than guidelines and fuzzing tutorials

Facets

learning-resource · maturity active

security fuzzing testing documentation developer-tools blockchain security developer-tools tutorials cross-platform cli smart-contracts solidity ethereum evm blockchain-security static-analysis symbolic-execution trail-of-bits docker

10 sources

Member repositories

RepositoryRoleHealth v2
crytic/building-secure-contractsmain57

For agents

markdown · JSON · MCP: product_card(name="crytic/building-secure-contracts")

Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem