web3-expert
Pass
Audited by Gen Agent Trust Hub on Sep 11, 2026
Risk Level: SAFE
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill is designed to process and generate blockchain-related code, which involves ingesting user-supplied logic.
- Ingestion points: Processes smart contract source code and Web3 configuration files described in
SKILL.md. - Boundary markers: Instructions emphasize mandatory input validation and external security audits before deployment.
- Capability inventory: Utilizes standard filesystem tools (
Read,Write,Glob) andBashfor development workflows. - Sanitization: Recommends the use of standardized, audited libraries like OpenZeppelin to mitigate common vulnerabilities such as reentrancy.
- [EXTERNAL_DOWNLOADS]: The skill refers to established Web3 infrastructure and development tools.
- References: Includes links to official documentation for Solidity, Ethereum, and standard libraries like ethers.js, Hardhat, and Foundry. It also references the Infura IPFS gateway for decentralized storage integration in
references/EXAMPLES.md.
Audit Metadata