Severity Classification Skill

Classify smart contract audit findings into HIGH, MEDIUM, LOW, and GAS severity levels.

56|9|Updated Jan 25, 2026
One-click install
npx skills add https://github.com/0x-Shashi/WEB3-AUDIT-SKILLS --skill severity-classification-skill
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: Severity Classification Skill
Source: https://github.com/0x-Shashi/WEB3-AUDIT-SKILLS/tree/main/skills/severity
Command: npx skills add https://github.com/0x-Shashi/WEB3-AUDIT-SKILLS --skill severity-classification-skill

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes references (resource) components.

What problem does it solve?

This Skill enables teams to assign data-driven severity levels to smart contract audit findings, ensuring consistent risk assessment and traceable justification.

Core Features & Use Cases

  • Data-driven severity distributions for HIGH, MEDIUM, LOW, and GAS with historical calibration from Code4rena, Sherlock, Cyfrin, and other firms.
  • 30 representative examples per level to illustrate typical vulnerabilities and narratives.
  • Supports generating auditable severity justifications and scoring references for internal reports.

Quick Start

Provide a severity classification for a set of audit findings using the installed benchmarks and references.

Frequently Asked Questions about Severity Classification Skill

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I classify smart contract audit findings by severity using historical data?

Classify audit findings by severity using data-driven benchmarks and historical distributions calibrated from major firms. This Skill applies these distributions across HIGH, MEDIUM, LOW, and GAS levels to return a labeled severity with traceable justification.

What severity levels are supported for data-driven vulnerability classification?

Data-driven vulnerability classification supports HIGH, MEDIUM, LOW, and GAS severity levels. Each level includes 30 representative examples of typical vulnerabilities and narratives to ensure consistent risk assessment across diverse vulnerability types.

How do I generate auditable severity justifications for smart contract reports?

Generate auditable severity justifications by applying historical severity distributions to your audit findings. The classification process outputs a labeled severity alongside a scoring weight reference to ensure traceable and consistent risk assessment for internal reports.

Can I use Code4rena benchmark data to standardize my audit severity classifications?

Yes, you can standardize audit severity classifications using historical calibration data from Code4rena, Sherlock, Cyfrin, and other firms. These benchmarks provide the data-driven distributions necessary to consistently assign severity levels to your audit findings.

What is the best way to apply consistent risk assessment to diverse vulnerability types?

The best way to apply consistent risk assessment is using a data-driven severity classification approach. By leveraging historical distributions and representative examples per vulnerability level, teams ensure consistent and traceable severity labeling across diverse smart contract findings.

Do I need historical calibration data to classify audit findings by severity?

You need historical calibration data to classify audit findings by severity because it provides the benchmarks and historical distributions required. This Skill includes pre-installed references with 30 examples per level to ensure accurate and consistent risk assessment.