vechain-dev
Pass
Audited by Gen Agent Trust Hub on Mar 9, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill references several official VeChain NPM packages such as
@vechain/vechain-kit,@vechain/sdk-core, and@vechain/mcp-server, along with standard ecosystem dependencies like OpenZeppelin and TypeChain. All external resources are from trusted or well-known development sources. - [COMMAND_EXECUTION]: Includes instructions for environment management and local development, such as configuring Node.js via
nvm, managing dependencies withnpmoryarn, and running local blockchain nodes usingDocker. It also suggests usingnpxto launch the VeChain MCP server. - [SAFE]: The skill is designed to ingest and process on-chain data (e.g., transaction details, account states) and documentation search results. While this represents a surface for indirect prompt injection, it is a fundamental requirement for the skill's function as a blockchain development assistant and does not involve instructions to bypass safety protocols.
Audit Metadata