Slither
softwareAbout
Static analysis framework for Solidity smart contracts detecting vulnerabilities and code quality issues
Overview
Slither is a mature, widely-adopted static analysis framework for Solidity and Vyper smart contracts developed by Trail of Bits. Its 100+ detectors cover vulnerabilities from high severity through informational hints and integrate seamlessly with Hardhat and Foundry. Fast execution, low false-positive rates, and strong community adoption make it an essential part of any smart contract security workflow.
Pros
- +Industry standard
- +Fast analysis
- +Free
Cons
- -False positives
- -Solidity only
This may be an affiliate link — the creator and GuruStacks may earn a commission, at no extra cost to you. Learn more
Details
Pricing
Model
free
Platforms
Related
Similar tools
View alternatives →Codiga
4.4Real-time static code analysis tool that detects security vulnerabilities and coding issues across IDEs and CI/CD pipelines with customizable rules.
SonarQube
4.4Self-managed code quality and security analysis platform. Performs static analysis to detect bugs, vulnerabilities, and code smells across 30+ programming languages.
MythX
4.2Smart contract security analysis service combining static analysis, symbolic execution, and fuzzing
Cyfrin Updraft
4.2Smart contract security and development course platform by Patrick Collins covering Solidity and Foundry
Echidna
4.2Haskell-based smart contract fuzzer by Trail of Bits that detects vulnerabilities in Solidity and Vyper contracts through property-based testing.
OpenVAS
4.2Open-source vulnerability scanner providing comprehensive network security auditing and vulnerability assessment for detecting security issues across IT infrastructure.