skills/ahmetenesdur/starkfi/lending/Gen Agent Trust Hub

lending

Pass

Audited by Gen Agent Trust Hub on Mar 15, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill utilizes npx to fetch and execute the starkfi package from the npm registry to manage Starknet transactions.
  • [COMMAND_EXECUTION]: Operations such as supplying, borrowing, and repaying assets are performed by executing shell commands with the starkfi CLI.
  • [SAFE]: An indirect prompt injection surface exists through the ingestion of blockchain data: Ingestion points (lend-pools, lend-status, balance), Boundary markers (None), Capability inventory (Bash shell execution via npx), Sanitization (None). The risk is considered low as the data is used for structured CLI parameters.
  • [SAFE]: No prompt injection attempts, obfuscation techniques, or unauthorized data access patterns were detected.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 15, 2026, 04:43 PM