haedal-hawal
Pass
Audited by Gen Agent Trust Hub on Mar 19, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill performs HTTP POST requests to https://skillsapi.haedal.xyz/api/v1/hawal/* to execute staking transactions and retrieve user ticket information. This external communication is restricted to the vendor's official API and is essential for the skill's functionality.- [COMMAND_EXECUTION]: The skill utilizes the Bash tool with curl to interact with the Haedal Protocol's REST API and jq to extract transaction data from the JSON responses. These tools are used appropriately for data retrieval and processing.- [SAFE]: Detailed analysis confirms that the skill does not contain prompt injections, hardcoded credentials, or obfuscated code. It operates within the expected parameters of a DeFi staking utility and relies on documented local references for validator mapping.
Audit Metadata