skills/circlefin/skills/swap-tokens/Gen Agent Trust Hub

swap-tokens

Pass

Audited by Gen Agent Trust Hub on Apr 23, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill follows security best practices by explicitly forbidding the auto-execution of transactions and requiring manual confirmation for all parameters such as amounts, chains, and addresses.\n- [SAFE]: Credential management is handled securely by instructing users to use environment variables and providing .gitignore recommendations to prevent accidental exposure of private keys or API tokens.\n- [EXTERNAL_DOWNLOADS]: Fetches official SDKs and adapters from the Circle organization via npm, including @circle-fin/app-kit and @circle-fin/swap-kit.\n- [PROMPT_INJECTION]: The skill includes explicit instructions to treat repository content as context only and strictly forbids the agent from inferring swap parameters from codebase files, which effectively mitigates indirect prompt injection risks.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 23, 2026, 10:00 PM