meteora-dlmm-pool-screening

Pass

Audited by Gen Agent Trust Hub on Sep 17, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill performs network requests to public Meteora data endpoints (pool-discovery-api.datapi.meteora.ag and dlmm.datapi.meteora.ag) to retrieve pool statistics. These are well-known services associated with the skill's primary purpose.
  • [COMMAND_EXECUTION]: The skill executes a local Python script (scripts/screen.py) to process data and generate reports. The script uses the Python standard library (urllib, json, argparse) and does not perform any dangerous system operations or shell injections.
  • [DATA_EXFILTRATION]: No sensitive data access was identified. The skill is explicitly read-only and instructions forbid accessing wallets, private keys, or environment variables.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes external JSON data from Meteora APIs. While this represents a data ingestion surface, the processing is limited to numerical scoring and markdown table generation, with no evidence of instructions being interpolated into the agent's prompt in an unsafe manner.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 17, 2026, 10:18 AM
Security Audit — agent-trust-hub — meteora-dlmm-pool-screening