seed-my-wallet
Pass
Audited by Gen Agent Trust Hub on Mar 9, 2026
Risk Level: SAFECOMMAND_EXECUTIONDATA_EXFILTRATIONEXTERNAL_DOWNLOADS
Full Analysis
- [COMMAND_EXECUTION]: The skill recommends using the
solanaCLI andcurlto configure the environment and submit seeding requests. These commands are standard for the Solana ecosystem and align with the skill's primary purpose. - [DATA_EXFILTRATION]: Transmits the user-provided Solana wallet address to the vendor's API endpoint (
preview-api.aerosol.so). This is an expected and necessary data flow for the service and does not involve sensitive files, environment variables, or private credentials. - [EXTERNAL_DOWNLOADS]: Interacts with remote resources on vendor-controlled domains (
aerosol.so,seedmywallet.com) and associated APIs. These are documented as legitimate vendor resources required for the skill's functionality. - [SAFE]: No evidence of prompt injection, obfuscation, or privilege escalation was found. The skill provides clear instructions and example code for its intended use case on the Solana devnet.
Audit Metadata