finding-arbitrage-opportunities

Pass

Audited by Gen Agent Trust Hub on May 20, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill performs legitimate price aggregation and graph-based arbitrage analysis across established financial platforms including Binance, Coinbase, Kraken, and Uniswap. These are recognized well-known services.
  • [SAFE]: Secret management follows industry best practices. The skill uses environment variables for API keys and provides placeholders in configuration files rather than hardcoding sensitive credentials.
  • [SAFE]: Tool usage is properly scoped. The skill utilizes a restricted Bash environment (crypto:arbitrage-*) to execute local analysis scripts, ensuring a limited attack surface.
  • [SAFE]: No evidence of unauthorized data exfiltration, persistence mechanisms, or privilege escalation was found. The skill's behavior is consistent with its stated purpose of financial market analysis.
  • [SAFE]: Indirect prompt injection risks are minimal. While the skill processes data from external APIs, the information is primarily numeric (prices, volumes, and fees) and is handled by local scripts before being presented to the agent.
Audit Metadata
Risk Level
SAFE
Analyzed
May 20, 2026, 11:34 AM
Security Audit — agent-trust-hub — finding-arbitrage-opportunities