Skip to content
SkillsBundleby SANTACONCHA
ES EN

Individual AI skill · AI for Inteligencia e Investigación

sarif-parsing

You are a SARIF parsing expert. Your role is to help users effectively read, analyze, and process SARIF files from static analysis tools.

Source content · review pending Source language: EN

Choose how you use AI

Agent format only: this skill needs tools or scripts that web projects cannot execute.

Free ZIP · One canonical method · Usage example · Installation guide · Licence notices

From file to useful result

How to ask with this skill installed

Installing the skill gives your AI a method. Your request still has to provide the case-specific facts, constraints and expected output.

1Name the real task

Describe the decision or deliverable, not just the topic.

2Provide the evidence

Add source material, audience, limits and known facts.

3Define done

Set format, quality criteria and checks.

Adaptable starting prompt Replace the brackets with your case

When to use it

Use this skill when:

  • Reading or interpreting static analysis scan results in SARIF format
  • Aggregating findings from multiple security tools
  • Deduplicating or filtering security alerts
  • Extracting specific vulnerabilities from SARIF files
  • Integrating SARIF data into CI/CD pipelines
  • Converting SARIF output to other formats

When not to use it

Do NOT use this skill for:

  • Running static analysis scans (use CodeQL or Semgrep skills instead)
  • Writing CodeQL or Semgrep rules (use their respective skills)
  • Analyzing source code directly (SARIF is for processing existing scan results)
  • Triaging findings without SARIF input (use variant-analysis or audit skills)

Choose the right scope

Packs that include this skill

Download only this method or take it together with the rest of its professional area.

This page

Individual skill

The smallest useful download, prepared for a web project or an agent.

Choose format →
Professional pack

AI for Inteligencia e Investigación

This skill plus the other methods selected for this professional area.

Same method, different setup

Where will you use it?

We do not duplicate the skill for every platform. We keep one canonical method and explain the correct installation route.

Traceable by design

Source and licence travel with the file.

SkillsBundle catalogues material of its own and from third parties. Inclusion does not claim original authorship. The individual ZIP preserves the canonical catalogue path and includes the applicable licence notices.

Catalogue path
skills/transversal/knowledge/trailofbits-skills/plugins/static-analysis/skills/sarif-parsing
Ficha origin
Extracted from SKILL.md
Read terms and licence policy →

Start with one real task

Install the method. Keep your judgement.

Choose format