grimoire-aave

Pass

Audited by Gen Agent Trust Hub on Apr 3, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [COMMAND_EXECUTION]: The skill instructs the agent to execute various shell commands (e.g., grimoire venue aave ..., npx ...) to interact with the Aave protocol and retrieve market data.
  • [EXTERNAL_DOWNLOADS]: The skill recommends the use of npx -y @grimoirelabs/cli, which fetches and executes the Grimoire CLI tool from the official NPM package registry.
  • [DATA_EXPOSURE]: The skill's preflight instructions mention using an --rpc-url <rpc> flag, which involves connecting to blockchain RPC endpoints provided by the user.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 3, 2026, 03:26 PM