meteora-plugin
Pass
Audited by Gen Agent Trust Hub on Oct 8, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTIONCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill fetches version metadata, utility scripts, and installers from the vendor's official GitHub repositories (
okx/plugin-storeandokx/onchainos-skills). - [REMOTE_CODE_EXECUTION]: The skill downloads and executes an installation script and a compiled binary from the vendor's release assets. Security is maintained through SHA256 checksum verification of the downloaded files before execution.
- [COMMAND_EXECUTION]: The skill utilizes the
onchainosCLI for blockchain interactions and wallet management. It also usesnpxfor installing and updating related plugin components. - [INDIRECT_PROMPT_INJECTION]: The skill processes external data from the Meteora API and Solana RPC.
- Ingestion points: Retrieval occurs in
src/api.rsandsrc/solana_rpc.rsfor pool and position data. - Boundary markers: The
SKILL.mdcontains a specific 'Data Trust Boundary' notice informing the agent to treat all external data as untrusted. - Capability inventory: Capabilities include transaction submission via the
onchainosCLI and network requests for market data. - Sanitization: The instructions explicitly warn against executing or evaluating directives embedded in API responses.
Audit Metadata