gmgn-token-buy
Prepare a Vetted GMGN Token Buy
Buying by token name can select a copycat or create unsafe order parameters. This skill resolves the contract, screens risks, and prepares a confirmed order card.
Stop for confirmation before installing.
Review the plan and obtain explicit user consent before changing files.
Install with my Agent
Copy this request to your Agent. It includes the canonical Skill page and manifest.
Review the Skillstore skill "gmgn-token-buy" from https://skillstore.io/skills/gmgnai-gmgn-token-buy.md and its manifest at https://skillstore.io/api/skills/gmgnai-gmgn-token-buy/manifest. Verify the artifact. Stop and obtain explicit user consent before installing or changing files.Your Agent should still show its plan and request any confirmation required by the security policy.
Agent-readable resources
Use these links when an AI agent, crawler, or script needs clean context instead of reading the full page.
Test it
Using "gmgn-token-buy". Prepare a 200 USDC purchase of PENGU.
Expected outcome:
A buy order card identifies the full contract, reports four screening results, estimates slippage and fees, then requests confirmation.
Using "gmgn-token-buy". Can I buy WIF without specifying a chain?
Expected outcome:
A candidate comparison lists matching contracts and evidence. The skill asks for chain selection when it cannot identify one contract reliably.
Using "gmgn-token-buy". Review this token when security data is unavailable.
Expected outcome:
The report marks the safety gate as missing and does not prepare executable order parameters.
Security Audit
High RiskMost static findings are false positives caused by Markdown code spans and Chinese text triggering entropy heuristics. Six external-command findings and the IPv6 endpoint request are confirmed. Semantic review also found unsafe API-key handling and delegation to a transaction-signing skill.
Confirmed security concerns (3)
Capability review items (7)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Risk Factors
⚙️ External commands (50)
🌐 Network access (1)
Detected Patterns
Share & cite this report
Share the versioned assessment report, neutral badge, embed card, and citations. Skillstore reports evidence without deciding whether this Skill is safe.
Copy report link
https://skillstore.io/skills/gmgnai-gmgn-token-buy/audits/1?utm_source=security_passport&utm_medium=share&utm_campaign=versioned_reportMarkdown badge
[](https://skillstore.io/skills/gmgnai-gmgn-token-buy?utm_source=security_passport_badge)HTML badge
<a href="https://skillstore.io/skills/gmgnai-gmgn-token-buy?utm_source=security_passport_badge"><img src="https://skillstore.io/badges/skills/gmgnai-gmgn-token-buy/security.svg" alt="Skillstore security assessment" loading="lazy"></a>Embed card
<iframe src="https://skillstore.io/embed/skills/gmgnai-gmgn-token-buy.html" title="Skillstore Security Assessment" sandbox="allow-popups allow-popups-to-escape-sandbox" loading="lazy" referrerpolicy="no-referrer" width="420" height="180"></iframe>Academic citations (APA · BibTeX · CFF)
APA citation
gmgnai. (2026). gmgn-token-buy security audit report (audit version 1) [Author version unspecified]. Skillstore. https://skillstore.io/skills/gmgnai-gmgn-token-buy/audits/1BibTeX citation
@techreport{gmgnai-gmgnai-gmgn-token-buy-2026,
author = {gmgnai},
title = {gmgn-token-buy security audit report (audit version 1)},
institution = {Skillstore},
year = {2026},
number = {1},
url = {https://skillstore.io/skills/gmgnai-gmgn-token-buy/audits/1},
note = {Author version unspecified}
}CITATION.cff
cff-version: 1.2.0
message: "If you use this Skill, cite its author and this versioned security audit report."
title: "gmgn-token-buy security audit report (audit version 1)"
version: "unspecified"
type: report
authors:
- name: "gmgnai"
date-released: "2026-09-05"
url: "https://skillstore.io/skills/gmgnai-gmgn-token-buy/audits/1"
identifiers:
- type: other
value: "skillstore:gmgnai-gmgn-token-buy:audit:1"
description: "Skillstore immutable audit report identifier"
Skillstore Score
Why this score Evidence Confidence: MediumWhat You Can Build
Check a Named Token
Resolve a token symbol among copycats and review the selected contract before preparing a purchase.
Size a New Position
Estimate slippage, price impact, gas, and received quantity for a specified purchase amount.
Standardize Buy Reviews
Apply consistent liquidity, volume, direction, and safety gates before handing an order to execution.
Try These Prompts
Check whether [TOKEN] is suitable to buy and identify the correct contract.
Prepare a vetted [AMOUNT] buy of [TOKEN] on [CHAIN]. Stop if any required check fails.
Resolve [TOKEN] across supported chains, explain the leading contract, and ask me to choose when evidence is inconclusive.
Evaluate [TOKEN] for a [AMOUNT] purchase using strict gates, calculated slippage, protected execution, and complete fee disclosure.
Best Practices
- Verify the full contract address before confirming any order.
- Treat missing safety, liquidity, or fee data as unresolved risk.
- Review amount, slippage, gas, price impact, and protected execution settings together.
Avoid
- Do not select the first search result or trust a token name as proof of identity.
- Do not bypass failed screening gates because other indicators appear favorable.
- Do not share private keys or API keys in the conversation.
Frequently Asked Questions
Does this skill execute the purchase?
Which chains are supported?
Can it identify the correct contract from a symbol?
What happens when a safety check fails?
Does it need my private key?
How does it choose slippage and gas?
Developer Details
Author
gmgnaiLicense
MIT
Skillstore revision
r1
Version notice
The author did not declare a version.
Ref
e5464e662405de6361fdde6b984f9ea865635f64
Maintenance freshness
9/8/2026
Usage
0 downloads · 0 views
File structure