crypto-portfolio

Pass

Audited by Gen Agent Trust Hub on Aug 20, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill executes Python scripts to perform blockchain data retrieval and normalization. No unsafe shell command execution or user-input injection into system commands was detected.
  • [CREDENTIALS_UNSAFE]: Sensitive information such as API keys and private keys are handled via environment variables (ZERION_API_KEY, ASTER_SIGNER_PRIVATE_KEY). The skill documentation correctly advises the user on secure storage practices.
  • [EXTERNAL_DOWNLOADS]: The skill interacts with numerous well-known cryptocurrency APIs (e.g., Zerion, Hyperliquid, Solend, Jupiter, and TONAPI). It also references the author's (dzianisv) GitHub repository for specific price feed logic. All external communications are consistent with the skill's stated purpose of financial data aggregation.
  • [DATA_EXFILTRATION]: No unauthorized data transmission was found. The skill only transmits relevant wallet addresses and protocol identifiers to the integrated DeFi services for the purpose of position discovery and valuation.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 20, 2026, 02:21 PM
Security Audit — agent-trust-hub — crypto-portfolio