hodlmm-signal-allocator
Pass
Audited by Gen Agent Trust Hub on Apr 8, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSDATA_EXFILTRATION
Full Analysis
- [COMMAND_EXECUTION]: The skill operates as a CLI tool using the Bun runtime to process decentralized finance data and execute transactions on the Stacks blockchain.
- [EXTERNAL_DOWNLOADS]: Fetches live market data, macro-economic signals, and risk indices from external endpoints including bitflowapis.finance, aibtc.news, and a Cloudflare worker. These data points are used exclusively as inputs for the internal allocation scoring logic.
- [DATA_EXFILTRATION]: Accesses local encrypted keystore files within the ~/.aibtc directory. This is standard behavior for the vendor's ecosystem to facilitate local transaction signing; analysis confirms that private keys and sensitive credentials are not transmitted to any external servers.
Audit Metadata