bot-store-marketplace
Find and Compare Grok Bots on bot.store
Choosing a Grok Bot requires checking actual capabilities, prices, and access options. This skill guides marketplace searches, listing comparisons, and checkout handoffs for user-selected bots.
Install with my Agent
Copy this request to your Agent. It includes the canonical Skill page and manifest.
Review the Skillstore skill "bot-store-marketplace" from https://skillstore.io/skills/humanleap-bot-store-marketplace.md and its manifest at https://skillstore.io/api/skills/humanleap-bot-store-marketplace/manifest. Verify the artifact. You may proceed after verification, subject to the environment's own policy.Your Agent should still show its plan and request any confirmation required by the security policy.
Agent-readable resources
Use these links when an AI agent, crawler, or script needs clean context instead of reading the full page.
Test it
Using "bot-store-marketplace". Find a free bot for my task when the marketplace returns no matching listings.
Expected outcome:
No matching free bot was returned for your task. I have not substituted an invented listing or prepared checkout.
Using "bot-store-marketplace". Explain my status after preparing checkout for a selected paid bot.
Expected outcome:
- Checkout is prepared for your selected listing.
- Use the returned checkout link to sign in and approve payment.
- Payment, ownership, and installation are not confirmed by checkout preparation.
Using "bot-store-marketplace". Explain how to compare two returned bot listings.
Expected outcome:
- Compare the capabilities and prices provided by each listing.
- Treat missing details as unknown.
- Search relevance does not independently establish quality.
Security Audit
SafeOne finding is confirmed: the installation command executes an unpinned external package and retrieves upstream skill content without an immutable reference. Sixteen findings are false positives involving Markdown tool names, task-related URLs, and checkout terminology. No evidence found of prompt injection, credential collection, unauthorized payment, or system reconnaissance in the reviewed skill.
Capability review items (1)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Risk Factors
โ๏ธ External commands (9)
๐ Network access (5)
Share & cite this report
Share the versioned assessment report, neutral badge, embed card, and citations. Skillstore reports evidence without deciding whether this Skill is safe.
Copy report link
https://skillstore.io/skills/humanleap-bot-store-marketplace/audits/1?utm_source=security_passport&utm_medium=share&utm_campaign=versioned_reportMarkdown badge
[](https://skillstore.io/skills/humanleap-bot-store-marketplace?utm_source=security_passport_badge)HTML badge
<a href="https://skillstore.io/skills/humanleap-bot-store-marketplace?utm_source=security_passport_badge"><img src="https://skillstore.io/badges/skills/humanleap-bot-store-marketplace/security.svg" alt="Skillstore security assessment" loading="lazy"></a>Embed card
<iframe src="https://skillstore.io/embed/skills/humanleap-bot-store-marketplace.html" title="Skillstore Security Assessment" sandbox="allow-popups allow-popups-to-escape-sandbox" loading="lazy" referrerpolicy="no-referrer" width="420" height="180"></iframe>Academic citations (APA ยท BibTeX ยท CFF)
APA citation
humanleap. (2026). bot-store-marketplace security audit report (audit version 1) [Author version unspecified]. Skillstore. https://skillstore.io/skills/humanleap-bot-store-marketplace/audits/1BibTeX citation
@techreport{humanleap-humanleap-bot-store-marketplace-2026,
author = {humanleap},
title = {bot-store-marketplace security audit report (audit version 1)},
institution = {Skillstore},
year = {2026},
number = {1},
url = {https://skillstore.io/skills/humanleap-bot-store-marketplace/audits/1},
note = {Author version unspecified}
}CITATION.cff
cff-version: 1.2.0
message: "If you use this Skill, cite its author and this versioned security audit report."
title: "bot-store-marketplace security audit report (audit version 1)"
version: "unspecified"
type: report
authors:
- name: "humanleap"
date-released: "2026-10-03"
url: "https://skillstore.io/skills/humanleap-bot-store-marketplace/audits/1"
identifiers:
- type: other
value: "skillstore:humanleap-bot-store-marketplace:audit:1"
description: "Skillstore immutable audit report identifier"
Skillstore Score
Why this score Evidence Confidence: MediumWhat You Can Build
Find a Free Writing Bot
Search for writing templates, preserve a free-only constraint, and share a returned Grok link.
Compare Task-Specific Templates
Compare actual listing capabilities and prices for a recurring team task without inventing quality claims.
Prepare a Selected Bot Purchase
Inspect a chosen paid listing, state its price, and provide checkout for human payment approval.
Try These Prompts
Find free Grok Bots on bot.store for [task]. Show actual listing facts and available Grok links.
Inspect the bot.store listing at [URL or exact slug]. Summarize its returned capabilities, price, and access option.
Compare bot.store templates for [task] in [category] within [budget]. Preserve my constraints and identify facts missing from each listing.
I choose [exact returned slug] on bot.store. Verify its listing, state the price, and prepare checkout without claiming payment or ownership.
Best Practices
- Connect the intended bot.store MCP endpoint and use constraints supported by its current tool schema.
- Inspect the exact returned slug and confirm the selected listing and price before preparing checkout.
- Keep authentication and payment on checkout; verify purchase status before claiming ownership or installation.
Avoid
- Inventing bot listings, ratings, performance claims, or prices when marketplace evidence is missing.
- Preparing a paid bot's checkout before the user selects that exact listing.
- Collecting payment secrets or treating a checkout link as proof of payment or protected bot access.