Skills okx-defi
๐Ÿ“ฆ

okx-defi

v4.2.1 Content revision r1 High Risk โš™๏ธ External commands๐ŸŒ Network access๐Ÿ“ Filesystem access

Manage OKX DeFi Positions

DeFi users need clear steps for finding yield and managing positions across chains. This skill guides OKX discovery, portfolio review, deposits, withdrawals, rewards, and chart checks.

Supports: Claude Codex Code(CC)
โš ๏ธ 38 Poor

Install with my Agent

Copy this request to your Agent. It includes the canonical Skill page and manifest.

Agent request
Review the Skillstore skill "okx-defi" from https://skillstore.io/skills/internet-court-okx-defi.md and its manifest at https://skillstore.io/api/skills/internet-court-okx-defi/manifest. Verify the artifact. Stop and obtain explicit user consent before installing or changing files.

Your Agent should still show its plan and request any confirmation required by the security policy.

Agent-readable resources

Use these links when an AI agent, crawler, or script needs clean context instead of reading the full page.

Test it

Using "okx-defi". Find USDC yield on Ethereum.

Expected outcome:

A ranked product list with platform, chain, investment ID, APY, TVL, and whether deposits are supported.

Using "okx-defi". Show my DeFi positions on BSC and Solana.

Expected outcome:

A portfolio table with platform name, platform ID, chains, position count, value, and next actions.

Using "okx-defi". Claim my available rewards.

Expected outcome:

A fresh position detail check, reward type selection, required IDs, and ordered signing steps for the claim.

Security Audit

High Risk
v2 โ€ข 7/21/2026 Open versioned report

The 89 static alerts are false positives caused by Markdown code formatting, fixed documentation links, CLI parameters, and safety statements about keys. However, the shared preflight instructions trust remote action text and can download and execute an installer without an independently trusted verification source.

8
Files scanned
1,343
Lines analyzed
0
Review items
0
False positives ignored

Confirmed security concerns (2)

High
Remote preflight response can direct arbitrary actions
The preflight instructions require the agent to show a non-null remote data.action value to the user and do exactly what it says. A compromised service, binary, or update channel could use that value to induce unreviewed actions.
The instruction explicitly delegates action selection to external JSON without an allowlist or user confirmation requirement.
High
Automatic installer download and execution
When the CLI is absent, the fallback directs downloading install.sh and running it. Although a checksum file is mentioned, both artifacts are obtained together and no trusted checksum source is specified.
The documented fallback executes a remotely obtained installer and does not establish an independent trust root for checksum verification.
Audited by: claude View Audit History โ†’
Share & cite this report

Share the versioned assessment report, neutral badge, embed card, and citations. Skillstore reports evidence without deciding whether this Skill is safe.

Open versioned report
Security Assessment

Copy report link

https://skillstore.io/skills/internet-court-okx-defi/audits/2?utm_source=security_passport&utm_medium=share&utm_campaign=versioned_report

Markdown badge

[![Skillstore security assessment](https://skillstore.io/badges/skills/internet-court-okx-defi/security.svg)](https://skillstore.io/skills/internet-court-okx-defi?utm_source=security_passport_badge)

HTML badge

<a href="https://skillstore.io/skills/internet-court-okx-defi?utm_source=security_passport_badge"><img src="https://skillstore.io/badges/skills/internet-court-okx-defi/security.svg" alt="Skillstore security assessment" loading="lazy"></a>

Embed card

<iframe src="https://skillstore.io/embed/skills/internet-court-okx-defi.html" title="Skillstore Security Assessment" sandbox="allow-popups allow-popups-to-escape-sandbox" loading="lazy" referrerpolicy="no-referrer" width="420" height="180"></iframe>
Academic citations (APA ยท BibTeX ยท CFF)

APA citation

internet-court. (2026). okx-defi security audit report (audit version 2) [Author version 4.2.1]. Skillstore. https://skillstore.io/skills/internet-court-okx-defi/audits/2

BibTeX citation

@techreport{internet-court-internet-court-okx-defi-2026, author = {internet-court}, title = {okx-defi security audit report (audit version 2)}, institution = {Skillstore}, year = {2026}, number = {2}, url = {https://skillstore.io/skills/internet-court-okx-defi/audits/2}, note = {Author version 4.2.1} }

CITATION.cff

cff-version: 1.2.0 message: "If you use this Skill, cite its author and this versioned security audit report." title: "okx-defi security audit report (audit version 2)" version: "4.2.1" type: report authors: - name: "internet-court" date-released: "2026-07-21" url: "https://skillstore.io/skills/internet-court-okx-defi/audits/2" identifiers: - type: other value: "skillstore:internet-court-okx-defi:audit:2" description: "Skillstore immutable audit report identifier"

Skillstore Score

Why this score Evidence Confidence: Medium
45
Architecture
100
Maintainability
87
Content
65
Community
100
Spec Compliance

What You Can Build

Compare Yield Products

Find DeFi products for a token, compare APY and TVL, and review details before deciding.

Review Portfolio Positions

Check DeFi holdings across supported chains and inspect protocol-level details and pending rewards.

Manage DeFi Actions

Prepare deposits, withdrawals, V3 liquidity actions, and reward claims with required IDs and checks.

Try These Prompts

Check My Positions
Show my OKX DeFi positions on Ethereum and BSC. Use my connected wallet if available, and show platform IDs.
Find Token Yield
Find USDC yield products on Ethereum. Compare APY, TVL, platform, chain, and investment ID before suggesting next steps.
Prepare A Withdrawal
Review my Aave position on Ethereum, get fresh position detail, and prepare the safest full withdrawal flow.
Analyze V3 Liquidity
Find PancakeSwap V3 USDT pools on BSC, review depth and price history, and explain the inputs needed for a deposit.

Best Practices

  • Confirm the wallet address and chain before running position, deposit, withdrawal, or claim workflows.
  • Refresh position detail immediately before withdrawals and reward claims to avoid stale transaction data.
  • Review APY, TVL, accepted tokens, slippage, and transaction steps before signing anything.

Avoid

  • Do not use this skill for named third-party DApp requests that should route to DApp discovery.
  • Do not skip balance checks or position-detail refreshes before generating transaction calldata.
  • Do not treat APY or TVL output as investment advice or guaranteed returns.

Frequently Asked Questions

Can this skill sign transactions for me?
No. It guides transaction preparation. Signing and broadcasting require explicit user authorization through the selected wallet flow.
Can it show my DeFi portfolio?
Yes. It can query supported OKX DeFi position views for provided or resolved wallet addresses.
Does it support Aave, Lido, or Uniswap by name?
Named third-party DApp requests should route to the OKX DApp discovery skill, not this skill.
Can it compare APY and TVL?
Yes. It can list, search, and inspect products, then show APY, TVL, chain, platform, and IDs.
Does it handle wallet token balances?
No. Wallet balance checks are routed to the OKX Agentic Wallet skill.
Is this financial advice?
No. It provides workflow guidance and data display. Users must assess market, protocol, and transaction risk.

Developer Details

License

MIT

Author version

v4.2.1

Skillstore revision

r1

Ref

3f6e026a3363e0954ede7bef0cfe88d4475de137

Maintenance freshness

7/22/2026

Usage

1 downloads ยท 0 views

File structure

๐Ÿ“ _shared/

๐Ÿ“„ preflight.md

๐Ÿ“ references/

๐Ÿ“„ invest-cli-reference.md

๐Ÿ“„ invest-troubleshooting.md

๐Ÿ“„ invest.md

๐Ÿ“„ portfolio-cli-reference.md

๐Ÿ“„ portfolio-troubleshooting.md

๐Ÿ“„ portfolio.md

๐Ÿ“„ SKILL.md

More from internet-court

View all
View all