Pre-ship audit checklist for Ethereum dApps built with Scaffold-ETH 2.

No licenceAuto-check passedBackend & APIs

Install QA

skills CLI
$ npx skills add austintgriffith/ethskills --skill qa -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install austintgriffith/ethskills qa --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/austintgriffith/ethskills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/qa .claude/skills/qa && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
qa
GitHub stars
294
Token cost
~5.3k tokens
SKILL.md length
2,159 words
Files
1
Skills in repo
22
Repo updated
First seen
Licence
None found

At a glance

Pre-ship audit checklist for Ethereum dApps built with Scaffold-ETH 2.

  • Works in 3 steps: Read the source code (app/, components/,… → Open the app in a browser and click… → Check every item below — report…
  • You are finalizing a dApp built with Scaffold-ETH 2
  • SKILL.md covers What You Probably Got Wrong, 🚨 Critical: Wallet Flow —…, 🚨 Critical: Four-State Button… and 🚨 Critical: SE2 Branding…, plus 15 more sections
  • Calls yarn and vercel; needs ETHERSCAN_API_KEY

What it does

QA is an agent skill from austintgriffith/ethskills. Pre-ship audit checklist for Ethereum dApps built with Scaffold-ETH 2. Give this to a separate reviewer agent (or fresh context) AFTER the build is complete. Use this skill whenever you are finalizing a dApp built with Scaffold-ETH 2.

Its SKILL.md is about 5.3k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Backend & APIs, covering Smart contracts and Audit readiness. It works with Ethereum. The repository describes itself as: The missing knowledge between AI agents and production Ethereum.

When your agent uses it

  • You are finalizing a dApp built with Scaffold-ETH 2
  • Tasks that involve Smart contracts
  • Tasks that involve Audit readiness

Example prompts

  • “/qa”

Workflow steps

3 steps, taken from the first numbered list in SKILL.md.

  1. Read the source code (app/, components/, contracts/)
  2. Open the app in a browser and click through every flow
  3. Check every item below — report PASS/FAIL, don't fix

What it can do on your machine

Read from SKILL.md and the folder at commit 06ea4ef. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • yarn
    • vercel

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Links to these hosts (documentation or services it may open):

    • docs.scaffoldeth.io
    • ui.scaffoldeth.io
    • speedrunethereum.com

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names these keys or tokens, usually read from environment variables:

    • ETHERSCAN_API_KEY

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

QA loads about 5.3k tokens when it runs. Until then it costs about 59 tokens; SKILL.md has 2,159 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~59
When it runs · the whole SKILL.md, loaded when a task matches
~5.3k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

Without a licence we can't republish the file, so here is its outline and opening line. It has 2,159 words (~5,265 tokens).

“"The app deployed, so we are done." For SE2 builds, shipping includes UX correctness, metadata, RPC reliability, contract verification, and branding cleanup.”

— opening of SKILL.md by austintgriffith
name
qa

Read the full SKILL.md on GitHub

Files

Just SKILL.md in qa of austintgriffith/ethskills.

Open the folder on GitHubat commit 06ea4ef

Compare with similar skills

QA next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

QA compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
QA this skillaustintgriffith/ethskills294—~5.3kAutomated safety check: PassNone
Deposit QrSuperior-Trade/superior-skills2141 repos~1.1kAutomated safety check: PassMIT
Explorer Contract Verificationsablier-labs/evm-monorepo353—~1.9kAutomated safety check: PassCustom licence
Developing Smart ContractsLFDT-Lineth/lineth-monorepo126—~1.4kAutomated safety check: PassAGPL-3.0
Squash BugbotLFDT-Lineth/lineth-monorepo126—~3.3kAutomated safety check: PassApache-2.0
Ops Indexer Queryboundless-xyz/boundless193—~3.5kAutomated safety check: PassApache-2.0

Similar skills

  • Deposit Qr

    Superior-Trade/superior-skills

    A skill your agent uses when a user needs a QR code or wallet payment URI to fund a Superior-managed EVM wallet on a specific chain before using Lighter, Polymarket, Hyperliquid, or other Superior…

    214 GitHub starsUsed in 1 repo~1.1k tokens
    Backend & APIsAuto-check passed
  • Explorer Contract Verification

    sablier-labs/evm-monorepo

    Verify smart contracts on Etherscan, Routescan, and Blockscout block explorers.

    353 GitHub stars~1.9k tokensUpdated yesterday
    Backend & APIsAuto-check passed
  • Developing Smart Contracts

    LFDT-Lineth/lineth-monorepo

    Solidity smart contract development guidelines for Lineth blockchain.

    126 GitHub stars~1.4k tokensUpdated today
    Backend & APIsAuto-check passed
  • Squash Bugbot

    LFDT-Lineth/lineth-monorepo

    Triage unresolved bot review comments on a GitHub PR. An agent skill from LFDT-Lineth/lineth-monorepo.

    126 GitHub stars~3.3k tokensUpdated today
    Backend & APIsAuto-check passed
  • Ops Indexer Query

    boundless-xyz/boundless

    Internal — for Boundless team members only. An agent skill from boundless-xyz/boundless.

    193 GitHub stars~3.5k tokensUpdated 1 mo ago
    Backend & APIsAuto-check passed
  • External Call Safety

    quillai-network/quillshield_skills

    Detects unsafe external call patterns and token integration vulnerabilities in smart contracts.

    129 GitHub stars~3.1k tokensUpdated 6 mo ago
    Backend & APIsAuto-check passed

More from austintgriffith/ethskills

All 22 skills in this repo
  • Audit

    austintgriffith/ethskills

    Deep EVM smart contract security audit system. An agent skill from austintgriffith/ethskills.

    294 GitHub stars~829 tokensUpdated 1 mo ago
    Auto-check passed
  • Building Blocks

    austintgriffith/ethskills

    DeFi legos and protocol composability on Ethereum and L2s. An agent skill from austintgriffith/ethskills.

    294 GitHub stars~2.9k tokensUpdated 1 mo ago
    Auto-check passed
  • Concepts

    austintgriffith/ethskills

    The essential mental models for building onchain — focused on what LLMs get wrong and what humans need explained.

    294 GitHub stars~3.1k tokensUpdated 1 mo ago
    Auto-check passed
  • Ethskills

    austintgriffith/ethskills

    Ethereum development knowledge for AI agents — from idea to deployed dApp.

    294 GitHub stars~1.4k tokensUpdated 1 mo ago
    Auto-check passed
  • Frontend Playbook

    austintgriffith/ethskills

    The complete build-to-production pipeline for Ethereum dApps.

    294 GitHub stars~3.4k tokensUpdated 1 mo ago
    Auto-check: notes
  • Frontend UX

    austintgriffith/ethskills

    Frontend UX rules for Ethereum dApps that prevent the most common AI agent UI bugs.

    294 GitHub stars~1.5k tokensUpdated 1 mo ago
    Auto-check passed

Works with

Categories

Questions about QA

What does QA do?

Pre-ship audit checklist for Ethereum dApps built with Scaffold-ETH 2. QA is an agent skill from austintgriffith/ethskills. Pre-ship audit checklist for Ethereum dApps built with Scaffold-ETH 2.

When should I use QA?

QA fits situations like: you are finalizing a dApp built with Scaffold-ETH 2; tasks that involve Smart contracts; tasks that involve Audit readiness.

How do I install QA in Claude Code?

Run `npx skills add austintgriffith/ethskills --skill qa -a claude-code`. Or copy the skill folder (qa in austintgriffith/ethskills) into .claude/skills/qa in your project. Claude Code loads it when a task matches its description.

How do I install QA in Codex?

Run `npx skills add austintgriffith/ethskills --skill qa -a codex`. Or copy the skill folder (qa in austintgriffith/ethskills) into .agents/skills/qa in your project. Codex loads it when a task matches its description.

Can I use QA in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add austintgriffith/ethskills --skill qa -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/qa, .gemini/skills/qa, .github/skills/qa and .opencode/skills/qa in your project.

What does QA need to run?

Going by SKILL.md and its folder, QA needs the command-line tools its instructions call (yarn and vercel) and credentials named ETHERSCAN_API_KEY.

Does QA access the network?

SKILL.md names 3 domains. As links in the text: docs.scaffoldeth.io, ui.scaffoldeth.io and speedrunethereum.com. This is read from the text; nothing was executed.

Is QA safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does QA use?

No licence was found for QA or its repository. Without one, default copyright applies: ask the author before reusing or redistributing it.

How many tokens does QA use?

About 5.3k tokens (SKILL.md is roughly 21k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to QA?

Skills that share tags, products or a category with QA: Deposit Qr (Superior-Trade/superior-skills, 214 stars), Explorer Contract Verification (sablier-labs/evm-monorepo, 353 stars), Developing Smart Contracts (LFDT-Lineth/lineth-monorepo, 126 stars) and Squash Bugbot (LFDT-Lineth/lineth-monorepo, 126 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains QA?

austintgriffith (a GitHub user) maintains it in austintgriffith/ethskills, which has 294 GitHub stars. The repository holds 22 skills in this directory. The repository was last updated on August 20, 2026.

Source: austintgriffith/ethskills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.