pancakeswap-v3-plugin

Pass

Audited by Gen Agent Trust Hub on May 12, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill downloads its binary, installation scripts, and version updates from official GitHub repositories belonging to the vendor. These downloads are consistent with the skill's lifecycle management and installation process.
  • [COMMAND_EXECUTION]: The plugin binary executes the 'onchainos' CLI to perform blockchain operations such as token swaps and liquidity minting. This functionality is the primary purpose of the skill and is documented with appropriate safety warnings requiring explicit user confirmation before broadcasting any transaction.
  • [SAFE]: No malicious behaviors, such as prompt injection, secret exfiltration, or obfuscation, were detected. The skill incorporates clear 'Data Trust Boundary' instructions that advise the AI agent to treat all data returned from external RPC sources as untrusted content, which is a key mitigation for indirect prompt injection risks.
Audit Metadata
Risk Level
SAFE
Analyzed
May 12, 2026, 10:59 AM