grimoire-aave
Pass
Audited by Gen Agent Trust Hub on Apr 3, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [COMMAND_EXECUTION]: The skill instructs the agent to execute various shell commands (e.g.,
grimoire venue aave ...,npx ...) to interact with the Aave protocol and retrieve market data. - [EXTERNAL_DOWNLOADS]: The skill recommends the use of
npx -y @grimoirelabs/cli, which fetches and executes the Grimoire CLI tool from the official NPM package registry. - [DATA_EXPOSURE]: The skill's preflight instructions mention using an
--rpc-url <rpc>flag, which involves connecting to blockchain RPC endpoints provided by the user.
Audit Metadata