onchain-skill-auditOn-chain skill provenance registry. Check, register, audit, and vouch for agent skills on Solana. Use when evaluating skill safety, registering new skills, or looking up provenance before installation.
Install via ClawdBot CLI:
clawdbot install emanz1/onchain-skill-auditGrade Fair — based on market validation, documentation quality, package completeness, maintenance status, and authenticity signals.
Calls external URL not in known-safe list
https://www.npmjs.com/package/@rocketlabs/skill-auditAudited Apr 16, 2026 · audit v1.0
Generated Apr 9, 2026
A DeFi protocol wants to integrate a new trading bot skill into its platform. The team uses the skill audit to check the bot's on-chain provenance, verify it hasn't been flagged malicious, and ensure it matches the registered hash before allowing installation. This prevents potential exploits from unverified skills in automated trading systems.
A crypto wallet developer is evaluating third-party skills for their wallet's plugin marketplace. They use the audit skill to submit severity assessments for each skill, leveraging IQ tokens to gate audits and ensure only qualified reviewers contribute. This helps maintain a secure ecosystem by highlighting risks like high-severity vulnerabilities.
A Web3 development team registers their new smart contract analysis skill on-chain to establish provenance. They use the register skill command to hash the skill content, making it publicly verifiable. Other developers can then vouch for the skill with scores, building community trust before adoption.
A financial institution adopts AI agent skills for automated reporting and needs to comply with internal security policies. They use the check skill command to audit history and trust badges, ensuring only verified or audited skills are installed. This mitigates risks from unknown or malicious code in regulated environments.
An online education platform teaching Solana development incorporates skill audit tools into its curriculum. Students learn to audit and vouch for skills as part of hands-on exercises, using free read functions and simulated writes to understand on-chain provenance without real SOL costs.
Offer professional auditing services where experts use the audit skill command to submit verdicts on skills for clients, charging fees based on severity levels or subscription plans. Revenue comes from service fees paid in SOL or IQ tokens, leveraging the IQ token gating to ensure auditor credibility.
Build a marketplace for AI agent skills that integrates the skill audit registry to display trust badges and audit histories. Charge listing fees or commissions on skill sales, with premium features for verified skills. Revenue is generated through transaction fees and premium subscriptions for enhanced visibility.
Develop and sell enhanced tooling around the skill audit package, such as dashboards for monitoring skill trust levels or APIs for automated checks in CI/CD pipelines. Revenue comes from software licenses, API usage fees, or enterprise support contracts for integration assistance.
💬 Integration Tip
Ensure the Solana SDK and web3.js dependencies are correctly installed, and handle IQ token requirements for audit writes by pre-funding wallets to avoid transaction failures.
Scored Apr 19, 2026
Access and interact with Clawdvault large-scale on-chain applications and AI-powered smart contract initiatives securely.
The agent's wallet for EVM chain transactions and raw signing. Use this skill when users want to create a wallet, transfer tokens, swap on DEXs, interact wit...
Monitors large cryptocurrency wallet balances (whales) on-chain using Web3 RPC to detect potential market-moving activity. Can read from `references/wallets....
x402-layer helps agents pay for APIs with USDC, deploy monetized endpoints, manage credits/webhooks/marketplace listings, and handle wallet-first ERC-8004 re...
ERC-8004 Trustless Agents - Register, discover, and build reputation for AI agents on Ethereum. Use when registering agents on-chain, querying agent registries, giving/receiving reputation feedback, or interacting with the AI agent trust layer.
Send real physical postcards anywhere in the world. Pay with x402 (USDC on Base), Stripe, or manual USDC transfer. No signup, no API key — just one API call.