Agent skill

Auditing Wallet Security

by jeremylongshore in jeremylongshore/tons-of-skills-marketplace

Audit wallet security by analyzing token approvals, permissions, and transaction patterns.

MITAuto-check passedSecurity

Install Auditing Wallet Security

skills CLI
$ npx skills add jeremylongshore/tons-of-skills-marketplace --skill auditing-wallet-security -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install jeremylongshore/tons-of-skills-marketplace auditing-wallet-security --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/jeremylongshore/tons-of-skills-marketplace.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/.curated/auditing-wallet-security .claude/skills/auditing-wallet-security && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
auditing-wallet-security
GitHub stars
2.8k
Token cost
~1.6k tokens
SKILL.md length
428 words
Files
12 (incl. scripts, references)
Skills in repo
3,342
Repo updated
First seen
Licence
MIT

At a glance

Audit wallet security by analyzing token approvals, permissions, and transaction patterns.

  • Works in 7 steps: List Token Approvals → Full Security Scan → Calculate Security Score → …
  • Checking wallet security
  • SKILL.md covers Overview, Prerequisites, Instructions and Output, plus 3 more sections
  • Runs Python scripts from its folder; calls python; needs ETHERSCAN_API_KEY

What it does

Auditing Wallet Security is an agent skill from jeremylongshore/tons-of-skills-marketplace. Audit wallet security by analyzing token approvals, permissions, and transaction patterns. Use when checking wallet security, reviewing approvals, or assessing risk exposure. Trigger with phrases like "audit wallet", "check approvals", "security scan", or "revoke tokens".

Its SKILL.md is about 1.6k tokens, which your agent loads only when the skill is triggered. The skill folder holds 14 other files, including scripts and reference files (for example `ARD.md`, `PRD.md` and `config/settings.yaml`). Compatibility notes: Designed for Claude Code

It sits in Security, covering Security review. It works with Ethereum. The repository describes itself as: Model-agnostic agent-skills platform with a harness-free canonical layer, verified adapters, and the ccpi package manager. Explore at tonsofskills.com. The licence is MIT.

When your agent uses it

  • Checking wallet security
  • Reviewing approvals
  • Assessing risk exposure
  • With phrases like audit wallet

Example prompts

  • “audit wallet”
  • “check approvals”
  • “security scan”
  • “/auditing-wallet-security”

Requirements

  • Python 3
  • A credential in ETHERSCAN_API_KEY
  • Compatibility (from SKILL.md): Designed for Claude Code
  • Pre-approved tools (allowed-tools): Read, Write, Edit, Grep, Glob, Bash(crypto:wallet-*)

Workflow steps

7 steps, taken from the step headings in SKILL.md.

  1. List Token Approvals
  2. Full Security Scan
  3. Calculate Security Score
  4. Analyze Transaction History
  5. Generate Revoke List
  6. Generate Full Report
  7. List Supported Chains

What it can do on your machine

Read from SKILL.md and the folder at commit cfae287. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves these tools, so the agent can use them without asking each time:

    • Read
    • Write
    • Edit
    • Grep
    • Glob
    • Bash(crypto:wallet-*)

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Ships 5 files in scripts/ (Python), which the agent can run.

    Shell commands in SKILL.md call:

    • python

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Links to these hosts (documentation or services it may open):

    • docs.etherscan.io

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names these keys or tokens, usually read from environment variables:

    • ETHERSCAN_API_KEY

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

  • Compatibility

    Designed for Claude Code

    From compatibility in the SKILL.md frontmatter.

Context cost

Auditing Wallet Security loads about 1.6k tokens when it runs, and up to ~7k if it reads all its reference files. Until then it costs about 74 tokens; SKILL.md has 428 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~74
When it runs · the whole SKILL.md, loaded when a task matches
~1.6k
With references · SKILL.md plus every file in references/, read only if the agent opens them
~7k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); the scripts in this folder are not scanned.

SKILL.md

The full file from jeremylongshore/tons-of-skills-marketplace at commit cfae287, republished under its MIT licence (© jeremylongshore). 428 words, ~1,552 tokens.

Download SKILL.mdSave it as .claude/skills/auditing-wallet-security/SKILL.md (or your agent's skills folder). This skill also uses 11 other files; get the full folder from GitHub.
name
auditing-wallet-security
description
Audit wallet security by analyzing token approvals, permissions, and transaction patterns. Use when checking wallet security, reviewing approvals, or assessing risk exposure. Trigger with phrases like "audit wallet", "check approvals", "security scan", or "revoke tokens".
allowed-tools
Read, Write, Edit, Grep, Glob, Bash(crypto:wallet-*)
compatibility
Designed for Claude Code
version
1.17.0
author
Jeremy Longshore <jeremy@intentsolutions.io>
license
MIT
tags
crypto, security, audit

Wallet Security Auditor

Overview

Security analysis tool for cryptocurrency wallets. Scans ERC20 token approvals, analyzes transaction patterns, calculates security risk scores, and provides actionable recommendations to improve wallet security.

Important: This is a read-only analysis tool. It does NOT execute transactions, manage private keys, or perform revocations.

Prerequisites

Before using this skill, ensure you have:

  • Python 3.8+ with requests library installed
  • Optional: ETHERSCAN_API_KEY environment variable for higher rate limits
  • Network access to blockchain RPC endpoints (public RPCs included)
  • Target wallet address (hex format, 0x...)

Instructions

1. List Token Approvals

Scan wallet for all active ERC20 token approvals:

text
cd ${CLAUDE_SKILL_DIR}/scripts
python wallet_auditor.py approvals <address> --chain <chain>

Options:

  1. --chain: ethereum, bsc, polygon, arbitrum, optimism, base (default: ethereum)
  2. --unlimited: Show only unlimited approvals
  3. --verbose: Detailed output
2. Full Security Scan

Comprehensive security analysis including approvals, transaction history, and patterns:

bash
python wallet_auditor.py scan <address> --verbose

Analyzes: 4. Active token approvals (unlimited, risky) 5. Transaction history patterns 6. Contract interactions (verified vs unverified) 7. Suspicious activity detection

3. Calculate Security Score

Get weighted security risk score (0-100, higher = safer):

text
python wallet_auditor.py score <address>
python wallet_auditor.py score <address> --json  # JSON output

Score components: 8. Approvals (40%): Unlimited, risky, stale approvals 9. Interactions (30%): Contract verification, flagged addresses 10. Patterns (20%): Transaction frequency, diversity 11. Age (10%): Wallet maturity

Risk levels: 12. 90-100: SAFE 13. 70-89: LOW 14. 50-69: MEDIUM 15. 30-49: HIGH 16. 0-29: CRITICAL

4. Analyze Transaction History

Review recent contract interactions and patterns:

bash
python wallet_auditor.py history <address> --days 30

Detects: 17. Rapid approval patterns 18. Interaction bursts (many contracts in short time) 19. High failure rates 20. Dust attacks

5. Generate Revoke List

Get prioritized list of approvals to revoke:

text
python wallet_auditor.py revoke-list <address>

Flags: 21. Unlimited approvals to unknown contracts 22. Risky/flagged spenders 23. Stale approvals (>6 months)

Show full SKILL.md (164 more words)Show less
6. Generate Full Report

Create comprehensive security audit report:

bash
python wallet_auditor.py report <address> --output report.txt
python wallet_auditor.py report <address> --json  # JSON format
7. List Supported Chains
bash
python wallet_auditor.py chains

Output

Security Score Report
╔═══════════════════════════════════════════════════════════════════╗
║                    WALLET SECURITY SCORE                          ║
╠═══════════════════════════════════════════════════════════════════╣
║  Overall Score:  [████████████████····] 82/100                    ║
║  Risk Level:     🟢 LOW                                           ║
╠═══════════════════════════════════════════════════════════════════╣
║  Component Scores:                                                ║
║    Approvals:     [██████████████······] 70/100                   ║
║    Interactions:  [██████████████████··] 90/100                   ║
║    Patterns:      [████████████████████] 100/100                  ║
╚═══════════════════════════════════════════════════════════════════╝
Approval Summary
  • Total active approvals count
  • Unlimited approvals flagged
  • Risky approvals with severity
  • Unique spenders and tokens
Risk Factors
  • [CRITICAL] Unlimited approval to unknown contract
  • [HIGH] Approval to flagged contract
  • [MEDIUM] Many unlimited approvals (>5)
  • [LOW] Interaction with unverified contract
Recommendations
  • Priority 1: Revoke risky approvals immediately
  • Priority 2: Review unnecessary unlimited approvals
  • Priority 3: Audit all approvals periodically

Error Handling

See ${CLAUDE_SKILL_DIR}/references/errors.md for comprehensive error handling:

ErrorCauseSolution
Address validation failedInvalid formatUse 0x + 40 hex characters
RPC timeoutNode unresponsiveRetry or use different RPC
Rate limitedToo many requestsAdd ETHERSCAN_API_KEY
No approvals foundWallet cleanNormal - no action needed

Examples

See ${CLAUDE_SKILL_DIR}/references/examples.md for detailed examples.

Quick Security Check
bash
# Check wallet approvals
python wallet_auditor.py approvals 0xd8dA6BF26964aF9D7eEd9e03E53415D37aA96045

# Full security scan
python wallet_auditor.py scan 0xd8dA6BF26964aF9D7eEd9e03E53415D37aA96045 --verbose

# Get security score
python wallet_auditor.py score 0xd8dA6BF26964aF9D7eEd9e03E53415D37aA96045

# Check other chains
python wallet_auditor.py approvals 0x... --chain polygon
python wallet_auditor.py approvals 0x... --chain arbitrum
Generate Audit Report
bash
# Text report
python wallet_auditor.py report 0x... --output security_audit.txt

# JSON for integration
python wallet_auditor.py report 0x... --json --output audit.json

Resources

  • revoke.cash: Web UI for revoking approvals
  • Etherscan Token Approval Checker: View/revoke on block explorer
  • Etherscan API: https://docs.etherscan.io/api-endpoints
  • ERC20 Approval Event: Topic 0x8c5be1e5ebec7d5bd14f71427d1e84f3dd0314c0f7b2291e5b200ac8c7c3b925
  • GoPlus Security API: Additional contract risk data

© jeremylongshore, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 11 other files (scripts, references) in skills/.curated/auditing-wallet-security of jeremylongshore/tons-of-skills-marketplace.

  • SKILL.md
  • ARD.md
  • PRD.md
  • config/settings.yaml
  • references/errors.md
  • references/examples.md
  • references/implementation.md
  • scripts/approval_scanner.py
  • scripts/formatters.py
  • scripts/risk_scorer.py
  • scripts/tx_analyzer.py
  • scripts/wallet_auditor.py

Open the folder on GitHubat commit cfae287

Compare with similar skills

Auditing Wallet Security next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Auditing Wallet Security compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Auditing Wallet Security this skilljeremylongshore/tons-of-skills-marketplace2.8k—~1.6kAutomated safety check: PassMIT
Gmgn TokenGMGNAI/gmgn-skills6091 repos~10kAutomated safety check: NotesMIT
Safe Multisig Governance Auditforefy/.context152—~1.4kAutomated safety check: PassMIT
Deepsec Documentation Guidevercel-labs/deepsec8.1k—~956Automated safety check: PassApache-2.0
Kubernetes Network Security Auditkubeshark/kubeshark12k—~7.3kAutomated safety check: NotesApache-2.0
Native Dependency Updatemono/SkiaSharp5.6k—~4.1kAutomated safety check: PassMIT

Similar skills

  • Gmgn Token

    GMGNAI/gmgn-skills

    Research any crypto or meme token by address — real-time price, market cap, liquidity, holder list, trader list, top Smart Money and KOL positions, security audit (honeypot, rug pull risk, dev…

    609 GitHub starsUsed in 1 repo~10k tokens
    SecurityAuto-check: notes
  • Audits the Safe multisig wallets of DeFi protocols for governance misconfigurations, scoring each against a finding library and producing a severity-ranked report.

    152 GitHub stars~1.4k tokensUpdated 6 days ago
    SecurityAuto-check passed
  • Deepsec Documentation Guide

    vercel-labs/deepsec

    Official

    Points the agent at deepsec's own docs to answer questions about initializing, configuring, resuming, scanning with and extending the vulnerability scanner.

    8.1k GitHub stars~956 tokensUpdated 12 days ago
    SecurityAuto-check passed
  • Hunts for compromised workloads and malicious traffic in a Kubernetes cluster by sweeping network data through Kubeshark MCP, mapped to MITRE ATT&CK.

    12k GitHub stars~7.3k tokensUpdated yesterday
    SecurityAuto-check: notes
  • Update native dependencies (libpng, libexpat, zlib, libwebp, harfbuzz, freetype, libjpeg-turbo, etc.) in SkiaSharp's Skia fork.

    5.6k GitHub stars~4.1k tokensUpdated yesterday
    SecurityAuto-check passed
  • Semgrep Security Scan

    trailofbits/skills

    Official

    Detects languages, proposes rulesets for approval, then runs the approved Semgrep scan across a codebase and merges the output into one SARIF file.

    7.5k GitHub stars~3.7k tokensUpdated yesterday
    SecurityAuto-check: notes

More from jeremylongshore/tons-of-skills-marketplace

All 3,342 skills in this repo
  • Performing Security Code Review

    jeremylongshore/tons-of-skills-marketplace

    Execute this skill enables AI assistant to conduct a security-focused code review using the security-agent plugin.

    2.8k GitHub starsUsed in 2 repos~1.3k tokens
    Auto-check: notes
  • Adapting Transfer Learning Models

    jeremylongshore/tons-of-skills-marketplace

    Build this skill automates the adaptation of pre-trained machine learning models using transfer learning techniques.

    2.8k GitHub stars~1.1k tokensUpdated today
    Auto-check passed
  • Agent Context Loader

    jeremylongshore/tons-of-skills-marketplace

    Execute proactive auto-loading: automatically detects and loads agents.md files.

    2.8k GitHub stars~1.1k tokensUpdated today
    Auto-check passed
  • Aggregating Performance Metrics

    jeremylongshore/tons-of-skills-marketplace

    Aggregate and centralize performance metrics from applications, systems, databases, caches, and services.

    2.8k GitHub stars~1.2k tokensUpdated today
    Auto-check passed
  • Analyzing Capacity Planning

    jeremylongshore/tons-of-skills-marketplace

    Execute this skill enables AI assistant to analyze capacity requirements and plan for future growth.

    2.8k GitHub stars~947 tokensUpdated today
    Auto-check passed
  • Analyzing Database Indexes

    jeremylongshore/tons-of-skills-marketplace

    Process use when you need to work with database indexing. An agent skill from jeremylongshore/tons-of-skills-marketplace.

    2.8k GitHub stars~2k tokensUpdated today
    Auto-check passed

Works with

Categories

Questions about Auditing Wallet Security

What does Auditing Wallet Security do?

Audit wallet security by analyzing token approvals, permissions, and transaction patterns. Auditing Wallet Security is an agent skill from jeremylongshore/tons-of-skills-marketplace. Audit wallet security by analyzing token approvals, permissions, and transaction patterns.

When should I use Auditing Wallet Security?

Auditing Wallet Security fits situations like: checking wallet security; reviewing approvals; assessing risk exposure; with phrases like audit wallet.

How do I install Auditing Wallet Security in Claude Code?

Run `npx skills add jeremylongshore/tons-of-skills-marketplace --skill auditing-wallet-security -a claude-code`. Or copy the skill folder (skills/.curated/auditing-wallet-security in jeremylongshore/tons-of-skills-marketplace) into .claude/skills/auditing-wallet-security in your project. Claude Code loads it when a task matches its description.

How do I install Auditing Wallet Security in Codex?

Run `npx skills add jeremylongshore/tons-of-skills-marketplace --skill auditing-wallet-security -a codex`. Or copy the skill folder (skills/.curated/auditing-wallet-security in jeremylongshore/tons-of-skills-marketplace) into .agents/skills/auditing-wallet-security in your project. Codex loads it when a task matches its description.

Can I use Auditing Wallet Security in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add jeremylongshore/tons-of-skills-marketplace --skill auditing-wallet-security -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/auditing-wallet-security, .gemini/skills/auditing-wallet-security, .github/skills/auditing-wallet-security and .opencode/skills/auditing-wallet-security in your project.

What does Auditing Wallet Security need to run?

Going by SKILL.md and its folder, Auditing Wallet Security needs Python for the scripts in its folder, the command-line tools its instructions call (python) and credentials named ETHERSCAN_API_KEY. Our summary lists: Python 3; A credential in ETHERSCAN_API_KEY. Its frontmatter pre-approves these tools: Read, Write, Edit, Grep, Glob, Bash(crypto:wallet-*). Compatibility (from SKILL.md): Designed for Claude Code.

Does Auditing Wallet Security access the network?

SKILL.md names 1 domain. As links in the text: docs.etherscan.io. This is read from the text; nothing was executed.

Is Auditing Wallet Security safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. The check reads SKILL.md only: the scripts in the folder are not scanned, so read them before running anything.

What licence does Auditing Wallet Security use?

Auditing Wallet Security is published under the MIT licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Auditing Wallet Security use?

About 1.6k tokens (SKILL.md is roughly 6.2k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 5.4k tokens, read only when the agent opens those files.

What are the alternatives to Auditing Wallet Security?

Skills that share tags, products or a category with Auditing Wallet Security: Gmgn Token (GMGNAI/gmgn-skills, 609 stars), Safe Multisig Governance Audit (forefy/.context, 152 stars), Deepsec Documentation Guide (vercel-labs/deepsec, 8.1k stars) and Kubernetes Network Security Audit (kubeshark/kubeshark, 12k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Auditing Wallet Security?

jeremylongshore (a GitHub user) maintains it in jeremylongshore/tons-of-skills-marketplace, which has 2,827 GitHub stars. The repository holds 3,342 skills in this directory. The repository was last updated on October 10, 2026.

Source: jeremylongshore/tons-of-skills-marketplace on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.