Portfolio concentration
82%
Top three share
Shows whether the organization is driven by one breakout repo or several visible projects.
Breadth
29 repos
Visible snapshot
20 repositories updated in the last 90 days.
Leading language
Python
Portfolio mix
Python (8), Unknown (6), Lean (5)
Average size
45
Stars per repository
Useful for distinguishing one flagship-heavy publisher from a repeatable portfolio.
82%
of the visible star count comes from this organization's top three repositories.
45
stars per repository in this same snapshot.
Python
is the most common language here, with 20 repositories updated in the last 90 days.
Why this rank
This organization stands out because its public portfolio is relatively balanced across 29 repositories.
Organization pages work best when you separate portfolio breadth from flagship concentration. In Trail of Bits's case, the visible top three repositories account for about 82% of total stars in this snapshot, which helps explain whether the organization is known for one breakout project or for a broader repeatable portfolio.
The dominant language mix here is Python (8), Unknown (6), Lean (5). That makes this page useful not just for popularity checks, but also for seeing what technical shape an organization's public ecosystem actually has.
| # | Repository | Language | Stars |
|---|---|---|---|
| 1 | trailofbits/trailmark Build and query a graph database representation of source code | C | 487 |
| 2 | trailofbits/CoBRA Coefficient-Based Reconstruction of Arithmetic — a Mixed Boolean-Arithmetic (MBA) expression simplifier for deobfuscation | C++ | 342 |
| 3 | trailofbits/coop Isolated VM environment for running Claude Code and Codex | Rust | 240 |
| 4 | trailofbits/agentcov gcov for what lines of code agents read | Python | 53 |
| 5 | trailofbits/idac idac - IDA Pro command line tool for agents and humans | Python | 53 |
| 6 | trailofbits/overtly-malicious-skills Malicious skills for testing skill scanners | Python | 42 |
| 7 | trailofbits/trailmix | Rust | 27 |
| 8 | trailofbits/codex-config | Shell | 26 |
| 9 | trailofbits/quantum-zk-proof-poc Proof-of-concept code for beating Google's ZK proof of quantum cryptanalysis | Python | 16 |
| 10 | trailofbits/micro ✨ Lightweight GitHub Actions workflow for AI vulnerability discovery (under development) | Python | 5 |
| 11 | trailofbits/llvm-project The LLVM Project is a collection of modular and reusable compiler and toolchain technologies. | 2 | |
| 12 | trailofbits/tamarin-prover Main source code repository of the Tamarin prover for security protocol verification. | 2 | |
| 13 | trailofbits/supply_chain A wrapper around cargo-supply-chain | Rust | 1 |
| 14 | trailofbits/papertrail | TypeScript | 1 |
| 15 | trailofbits/boulder An ACME-based certificate authority, written in Go. | Go | 1 |
| 16 | trailofbits/scroll-fv Formal verification of Scroll's zkvm-prover circuits in Lean 4 (Aeneas + Charon extraction, openvm-fv-derived RV32IM semantics) | Lean | 1 |
| 17 | trailofbits/tree-sitter-masm Miden Assembly grammar for tree-sitter | C | 1 |
| 18 | trailofbits/masm-lean Automatic translation of Miden assembly to Lean | Lean | 1 |
| 19 | trailofbits/cbc-mac-cc Lean formalization of the CBC-MAC Random Systems bound | Lean | 0 |
| 20 | trailofbits/break-golf Cryptanalysis golf: break schemes and prove it in Lean 4. Proof-of-concept board. | Lean | 0 |
| 21 | trailofbits/constructive-cryptography Lean 4 formalization of Constructive Cryptography: abstract specification calculus, resource algebra, and the constructive-cryptography layer. | Lean | 0 |
| 22 | trailofbits/restaurant-tester | Python | 0 |
| 23 | trailofbits/ptp-mldsa-native Patches for pq-code-package/mldsa-native | 0 | |
| 24 | trailofbits/rekor-watch | Go | 0 |
| 25 | trailofbits/go-jose An implementation of JOSE standards (JWE, JWS, JWT) in Go | 0 | |
| 26 | trailofbits/pkcs11key An interface to PKCS#11 devices that satisfies the crypto.Signer interface | 0 | |
| 27 | trailofbits/borp Boulder's version of go-gorp/gorp | 0 | |
| 28 | trailofbits/python-asn1-benchmark | Python | 0 |
| 29 | trailofbits/OCP-Security-SAFE Standardization of security reviews for datacenter products | Python | 0 |
Total stars are useful as a discovery signal, but they do not tell you whether a team maintains every repository equally. Pair this page with release cadence, maintainer activity, and the flagship concentration shown above before making adoption decisions.
For broader background on GitStar's ranking logic and editorial guidance, see Methodology & Editorial Standards.