ethena
Pass
Audited by Gen Agent Trust Hub on Apr 20, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [SAFE]: Comprehensive analysis of the provided scripts and instructions revealed no malicious patterns, obfuscation, or attempts to exfiltrate sensitive data.
- [EXTERNAL_DOWNLOADS]: The skill retrieves protocol-specific metrics and yield data from DefiLlama's public API (yields.llama.fi), which is a standard and reputable source in the crypto industry.
- [EXTERNAL_DOWNLOADS]: Communicates with the public Ethereum infrastructure via a standard RPC provider (ethereum.publicnode.com) to fetch live on-chain state such as exchange rates and vault assets.
- [COMMAND_EXECUTION]: Uses Python scripts to calculate and format Ethereum transaction calldata. The implementation includes input validation for EVM addresses and numerical amounts to ensure data integrity.
- [PROMPT_INJECTION]: The skill's instructions in SKILL.md provide operational guidelines for protocol interactions and do not contain any patterns intended to bypass agent safety filters or extract system instructions.
Audit Metadata