Solana Incident Response

Solana security incident response and war-room coordination. Use the moment a live or suspected exploit, drained treasury, compromised key, malicious upgrade, or failing-in-prod program is in play. Routes the responder through the five IR phases — DETECT, CONTAIN, INVESTIGATE, TRACE, RECOVER — plus stakeholder coordination (SEAL 911, SIRN), forensic replay (Surfpool fork), on-chain fund tracing, whitehat/Safe Harbor negotiation, and post-mortem + disclosure drafting. For writing/auditing program code use solana-auditor / trailofbits / safe-solana-builder; this skill is for the response, not the audit.

mihailShumilov Updated

File contents

mihailShumilov/solana-incident-response-skill/tree/main/skill commit c90fadb85f

Frequently asked questions

npx skillmds@latest add mihailshumilov/solana-incident-response