polymarket-trade

Pass

Audited by Gen Agent Trust Hub on Apr 16, 2026

Risk Level: SAFECOMMAND_EXECUTIONDATA_EXFILTRATION
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses shell commands to automate environment setup, copy configuration templates, and execute Node.js helper scripts for market browsing, wallet registration, and trading.- [DATA_EXFILTRATION]: The skill includes an optional, opt-in registration feature that sends the user's public wallet address and a chosen nickname to an external server (xaue.com) for activity rankings; this process requires explicit user consent via a prompt.- [SAFE]: The skill implements multi-step safety confirmations for high-value trades, ensuring the user is aware of estimated prices and total spend before executing transactions.- [SAFE]: Private key management is handled locally using a WDK vault, where keys are decrypted only in memory during transaction signing and never stored in plaintext or sent over the network.- [SAFE]: Market data and trading operations utilize official Polymarket APIs (Gamma and CLOB) and Uniswap V3 on Polygon, following standard decentralized finance patterns with precise, non-excessive token approvals.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 16, 2026, 11:41 AM