Aomi Transact
jeremylongshore/tons-of-skills-marketplace
Build natural-language crypto agents, web3 assistants, and trading bots that read and write EVM chain state.
Detects price oracle manipulation and flash loan attack vectors in DeFi smart contracts.
$ npx skills add quillai-network/quillshield_skills --skill oracle-flashloan-analysis -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install quillai-network/quillshield_skills oracle-flashloan-analysis --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/quillai-network/quillshield_skills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/plugins/oracle-flashloan-analysis/skills/oracle-flashloan-analysis .claude/skills/oracle-flashloan-analysis && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "oracle-flashloan-analysis" agent skill from https://github.com/quillai-network/quillshield_skills/tree/main/plugins/oracle-flashloan-analysis/skills/oracle-flashloan-analysis into .claude/skills/oracle-flashloan-analysis/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "oracle-flashloan-analysis", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/quillai-network/quillshield_skills/tree/main/plugins/oracle-flashloan-analysis/skills/oracle-flashloan-analysisType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add quillai-network/quillshield_skills --skill oracle-flashloan-analysis -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install quillai-network/quillshield_skills oracle-flashloan-analysis --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/quillai-network/quillshield_skills.git skills-src && mkdir -p .agents/skills && cp -r skills-src/plugins/oracle-flashloan-analysis/skills/oracle-flashloan-analysis .agents/skills/oracle-flashloan-analysis && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "oracle-flashloan-analysis" agent skill from https://github.com/quillai-network/quillshield_skills/tree/main/plugins/oracle-flashloan-analysis/skills/oracle-flashloan-analysis into .agents/skills/oracle-flashloan-analysis/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "oracle-flashloan-analysis", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add quillai-network/quillshield_skills --skill oracle-flashloan-analysis -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install quillai-network/quillshield_skills oracle-flashloan-analysis --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/quillai-network/quillshield_skills.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/plugins/oracle-flashloan-analysis/skills/oracle-flashloan-analysis .cursor/skills/oracle-flashloan-analysis && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "oracle-flashloan-analysis" agent skill from https://github.com/quillai-network/quillshield_skills/tree/main/plugins/oracle-flashloan-analysis/skills/oracle-flashloan-analysis into .cursor/skills/oracle-flashloan-analysis/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "oracle-flashloan-analysis", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/quillai-network/quillshield_skills.git --path plugins/oracle-flashloan-analysis/skills/oracle-flashloan-analysis--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add quillai-network/quillshield_skills --skill oracle-flashloan-analysis -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install quillai-network/quillshield_skills oracle-flashloan-analysis --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/quillai-network/quillshield_skills.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/plugins/oracle-flashloan-analysis/skills/oracle-flashloan-analysis .gemini/skills/oracle-flashloan-analysis && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "oracle-flashloan-analysis" agent skill from https://github.com/quillai-network/quillshield_skills/tree/main/plugins/oracle-flashloan-analysis/skills/oracle-flashloan-analysis into .gemini/skills/oracle-flashloan-analysis/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "oracle-flashloan-analysis", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install quillai-network/quillshield_skills oracle-flashloan-analysisInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add quillai-network/quillshield_skills --skill oracle-flashloan-analysis -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/quillai-network/quillshield_skills.git skills-src && mkdir -p .github/skills && cp -r skills-src/plugins/oracle-flashloan-analysis/skills/oracle-flashloan-analysis .github/skills/oracle-flashloan-analysis && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "oracle-flashloan-analysis" agent skill from https://github.com/quillai-network/quillshield_skills/tree/main/plugins/oracle-flashloan-analysis/skills/oracle-flashloan-analysis into .github/skills/oracle-flashloan-analysis/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "oracle-flashloan-analysis", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add quillai-network/quillshield_skills --skill oracle-flashloan-analysis -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install quillai-network/quillshield_skills oracle-flashloan-analysis --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/quillai-network/quillshield_skills.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/plugins/oracle-flashloan-analysis/skills/oracle-flashloan-analysis .opencode/skills/oracle-flashloan-analysis && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "oracle-flashloan-analysis" agent skill from https://github.com/quillai-network/quillshield_skills/tree/main/plugins/oracle-flashloan-analysis/skills/oracle-flashloan-analysis into .opencode/skills/oracle-flashloan-analysis/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "oracle-flashloan-analysis", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
oracle-flashloan-analysisDetects price oracle manipulation and flash loan attack vectors in DeFi smart contracts.
Oracle Flashloan Analysis is an agent skill from quillai-network/quillshield_skills. Detects price oracle manipulation and flash loan attack vectors in DeFi smart contracts. Classifies oracle trust models (Chainlink, TWAP, spot price, custom), identifies stale price risks, circular price dependencies, and flash loan atomicity exploitation patterns. Use when auditing DeFi protocols that depend on price data, oracle integrations, lending protocols, DEXs, derivatives, or any contract where flash loans could manipulate state within a single transaction.
Its SKILL.md is about 2.8k tokens, which your agent loads only when the skill is triggered. The skill folder holds 3 other files, including reference files (for example `references/flash-loan-vectors.md` and `references/oracle-types.md`).
It sits in Business, Finance & HR, covering Crypto and DeFi analysis, Banking and insurance and Penetration testing. It works with Uniswap. The repository describes itself as: Structured skills for smart contract security audits. Infers state invariants, detects semantic guard gaps, models flash loan + oracle attack chains, simulates adversarial… The licence is MIT.
4 steps, taken from the step headings in SKILL.md.
Read from SKILL.md and the folder at commit 8bdd3c0. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
No scripts in the folder and no shell commands in SKILL.md (its code samples are solidity and markdown).
From the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Oracle Flashloan Analysis loads about 2.8k tokens when it runs, and up to ~6.5k if it reads all its reference files. Until then it costs about 124 tokens; SKILL.md has 617 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from quillai-network/quillshield_skills at commit 8bdd3c0, republished under its MIT licence (© quillai-network). 617 words, ~2,817 tokens.
.claude/skills/oracle-flashloan-analysis/SKILL.md (or your agent's skills folder). This skill also uses 2 other files; get the full folder from GitHub.Detect vulnerabilities where external price data can be manipulated or flash loans can exploit protocol logic within a single transaction. These two attack vectors are often combined and represent the most common DeFi attack pattern.
balanceOf(), pool reserves, or spot prices for critical calculationsNot all price sources are equally secure. Oracle vulnerabilities stem from the gap between assumed trust and actual manipulation resistance.
Trust Level (highest to lowest):
┌─────────────────────────────────────────────┐
│ Level 5: Multi-oracle consensus + circuit │
│ breakers + TWAP + staleness checks │
├─────────────────────────────────────────────┤
│ Level 4: Chainlink with full validation │
│ (staleness, sequencer, min answers) │
├─────────────────────────────────────────────┤
│ Level 3: Uniswap V3 TWAP (long window) │
│ Multi-block manipulation cost │
├─────────────────────────────────────────────┤
│ Level 2: Uniswap V2 TWAP (short window) │
│ or Chainlink WITHOUT staleness check │
├─────────────────────────────────────────────┤
│ Level 1: Spot price from single pool │ ← Manipulable via flash loan
│ or balanceOf() for pricing │
└─────────────────────────────────────────────┘Locate every point where the contract reads external price/value data.
Search for these patterns:
| Pattern | Oracle Type | Risk Level |
|---|---|---|
latestRoundData() | Chainlink | Medium (depends on validation) |
latestAnswer() | Chainlink (deprecated) | HIGH (no round validation) |
observe() / consult() | Uniswap TWAP | Medium (depends on window) |
getReserves() | AMM spot price | CRITICAL (flash-loan manipulable) |
balanceOf(address(this)) | Self-balance | CRITICAL (donation attack) |
slot0() / sqrtPriceX96 | Uniswap V3 spot | CRITICAL (single-block manipulable) |
Custom getPrice() | Unknown | Requires investigation |
Build an Oracle Dependency Map:
Contract: LendingPool
├── borrowLimit() → uses getCollateralPrice()
│ └── getCollateralPrice() → calls chainlinkOracle.latestRoundData()
├── liquidate() → uses getDebtPrice()
│ └── getDebtPrice() → calls uniswapPool.slot0() ← SPOT PRICE!
└── calculateInterest() → uses getUtilizationRate()
└── getUtilizationRate() → reads internal state (safe)For each oracle source, verify that proper safety checks are in place.
Chainlink Validation Checklist:
// COMPLETE Chainlink integration
(uint80 roundId, int256 price, , uint256 updatedAt, uint80 answeredInRound) =
priceFeed.latestRoundData();
require(price > 0, "Invalid price"); // Check 1: Non-negative
require(updatedAt > 0, "Round not complete"); // Check 2: Round complete
require(answeredInRound >= roundId, "Stale price"); // Check 3: Not stale
require(block.timestamp - updatedAt < HEARTBEAT, // Check 4: Fresh
"Price too old");
// L2-specific
require(!sequencerFeed.isDown(), "Sequencer down"); // Check 5: L2 sequencer
require(block.timestamp - sequencerUptime > GRACE, // Check 6: Grace period
"Grace period");Missing Check Severity:
| Missing Check | Severity | Impact |
|---|---|---|
price > 0 | HIGH | Zero/negative price → infinite borrowing or free liquidations |
updatedAt > 0 | MEDIUM | Incomplete round data used |
answeredInRound >= roundId | HIGH | Stale price from previous round |
| Heartbeat/freshness | HIGH | Hours-old price during volatile markets |
| L2 sequencer check | HIGH | Stale price during L2 outage → unfair liquidations |
| Price deviation bounds | MEDIUM | Extreme outlier not filtered |
TWAP Validation:
Window length analysis:
- < 10 minutes: HIGH RISK — manipulable with moderate capital
- 10-30 minutes: MEDIUM RISK — expensive but feasible multi-block manipulation
- 30+ minutes: LOWER RISK — requires sustained pool manipulation
- Check: Is the TWAP window configurable? Can governance reduce it?Identify operations that can be exploited via flash loan atomicity.
Flash Loan Attack Model:
Single Transaction:
1. Borrow N tokens via flash loan (Aave, dYdX, Balancer)
2. Manipulate price source (swap in pool, donate to contract)
3. Exploit protocol at manipulated price (borrow, liquidate, swap)
4. Reverse manipulation (swap back)
5. Repay flash loan + fee
6. Profit = exploited_value - flash_loan_fee - gasDetection Algorithm:
For each function F that reads price/value data:
1. Identify the price source S
2. Can S be manipulated within a single transaction?
- Spot price from AMM → YES (swap in same tx)
- balanceOf(address(this)) → YES (donate tokens)
- Chainlink feed → NO (off-chain updates)
- TWAP → DEPENDS (short window = risky)
3. What does F do with the price?
- Determines borrowing limit → CRITICAL
- Triggers liquidation → CRITICAL
- Sets exchange rate → HIGH
- Informational only → LOW
4. Is the manipulation profitable?
- value_extracted - (flash_loan_fee + slippage + gas) > 0 → EXPLOIT VIABLECommon Flash Loan Attack Patterns:
| Pattern | Target | Method |
|---|---|---|
| Oracle manipulation | Lending protocol | Flash swap in pool → inflate collateral price → over-borrow |
| Governance attack | DAO/voting | Flash borrow governance tokens → vote → execute → return |
| Liquidation manipulation | Lending protocol | Flash swap to crash price → liquidate at discount |
| Share price inflation | Vault/ERC4626 | Flash loan → donate to vault → inflate share price → front-run deposit |
| Arbitrage amplification | AMM/DEX | Flash loan amplifies existing price discrepancy |
Find cases where a protocol's pricing depends on its own state, creating exploitable feedback loops.
Circular Dependency Pattern:
Protocol A uses Token X price → from Pool P
Pool P contains Token X + Token Y
Protocol A issues Token X (or affects its supply)
→ CIRCULAR: Protocol A's actions change Token X supply
→ changes Pool P reserves
→ changes Token X price
→ changes Protocol A's valuationsDetection:
For each price oracle call in the contract:
1. What token/asset is being priced?
2. Does THIS contract mint, burn, or distribute that token?
3. Does THIS contract add/remove liquidity from the pricing pool?
4. Does any action in THIS contract affect the reserves of the pricing pool?
If YES to any → CIRCULAR DEPENDENCY
Severity: CRITICAL if the circular path can be exploited atomicallyTask Progress:
- [ ] Step 1: Identify all oracle/price data sources in the contract
- [ ] Step 2: Classify each source by trust level (Chainlink, TWAP, spot, custom)
- [ ] Step 3: Verify validation checks for each oracle source
- [ ] Step 4: Map flash loan attack surfaces (which operations use manipulable prices?)
- [ ] Step 5: Detect circular price dependencies
- [ ] Step 6: Estimate manipulation cost vs profit (feasibility analysis)
- [ ] Step 7: Score findings and generate report## Oracle & Flash Loan Analysis Report
### Finding: [Title]
**Function:** `functionName()` at `Contract.sol:L42`
**Category:** [Oracle Manipulation | Stale Price | Flash Loan | Circular Dependency]
**Severity:** [CRITICAL | HIGH | MEDIUM]
**Oracle Source:** `[oracle contract/function]`
**Trust Level:** [1-5 from hierarchy]
**Vulnerability:**
[Description of how the price source can be manipulated or is insufficiently validated]
**Attack Scenario:**
1. Attacker obtains flash loan of [X tokens] from [source]
2. Swaps [amount] in [pool] to manipulate price of [token]
3. Calls `functionName()` which reads manipulated price
4. Extracts [value] from protocol at wrong price
5. Reverses manipulation and repays flash loan
6. Net profit: [amount]
**Missing Validations:**
- [ ] Price > 0 check
- [ ] Staleness check (heartbeat)
- [ ] Round completeness check
- [ ] L2 sequencer check
- [ ] Price deviation bounds
**Recommendation:**
[Specific fix — add TWAP, add Chainlink validation, implement circuit breaker]getReserves(), slot0(), or balanceOf() for pricing? (Flash-loan manipulable)price > 0, staleness, and round completeness?For oracle type details, see {baseDir}/references/oracle-types.md. For flash loan attack patterns, see {baseDir}/references/flash-loan-vectors.md.
© quillai-network, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
SKILL.md and 2 other files (references) in plugins/oracle-flashloan-analysis/skills/oracle-flashloan-analysis of quillai-network/quillshield_skills.
Open the folder on GitHubat commit 8bdd3c0
Oracle Flashloan Analysis next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Oracle Flashloan Analysis this skillquillai-network/quillshield_skills | 130 | — | ~2.8k | Automated safety check: Pass | MIT | |
| Aomi Transactjeremylongshore/tons-of-skills-marketplace | 2.8k | — | ~2.3k | Automated safety check: Pass | MIT | |
| Okx Cex Earnokx/agent-skills | 187 | 2 repos | ~3.3k | Automated safety check: Pass | MIT | |
| Aomi Transactsickn33/agentic-awesome-skills | 47k | 1 repos | ~2.3k | Automated safety check: Pass | MIT | |
| Okx Defi Investnirholas/three.ws | 229 | — | ~4.4k | Automated safety check: Pass | MIT | |
| Systematic Attackingmtarcure/claude-vibe-squad | 165 | — | ~3.6k | Automated safety check: Pass | MIT |
jeremylongshore/tons-of-skills-marketplace
Build natural-language crypto agents, web3 assistants, and trading bots that read and write EVM chain state.
okx/agent-skills
Manages OKX Simple Earn (flexible savings/lending), Flash Earn, On-chain Earn (staking/DeFi), Dual Investment (DCD/双币赢), and AutoEarn (自动赚币) via the okx CLI.
sickn33/agentic-awesome-skills
Build natural-language crypto/DeFi agents and EVM MCP plugins (Claude Code, Cursor, Codex, Gemini).
nirholas/three.ws
OKX-aggregated DeFi discovery and execution — for users who want OKX to find and route to the best protocol WITHOUT naming a specific DApp.
mtarcure/claude-vibe-squad
A skill your agent uses for ALL authorized offensive-security / bug-bounty work — the single method to find, chain, prove, dedup, and package the highest-value (High/Critical) findings across every…
affaan-m/ECC
Security checklist for Solidity AMM contracts, liquidity pools, and swap flows.
quillai-network/quillshield_skills
Token-efficient smart contract security auditing via Behavioral State Analysis (BSA).
quillai-network/quillshield_skills
Detects Denial of Service and griefing vulnerabilities in smart contracts.
quillai-network/quillshield_skills
Detects unsafe external call patterns and token integration vulnerabilities in smart contracts.
quillai-network/quillshield_skills
Detects input validation failures and arithmetic vulnerabilities in smart contracts.
quillai-network/quillshield_skills
Detects vulnerabilities in upgradeable proxy smart contracts including storage layout collisions, uninitialized implementations, function selector clashing, delegatecall context issues, and upgrade…
quillai-network/quillshield_skills
Systematically detects all reentrancy vulnerability variants in smart contracts — classic, cross-function, cross-contract, and read-only reentrancy.
Works with
Detects price oracle manipulation and flash loan attack vectors in DeFi smart contracts. Oracle Flashloan Analysis is an agent skill from quillai-network/quillshield_skills. Detects price oracle manipulation and flash loan attack vectors in DeFi smart contracts.
Oracle Flashloan Analysis fits situations like: auditing DeFi protocols that depend on price data; oracle integrations; lending protocols; any contract where flash loans could manipulate state within a single transaction.
Run `npx skills add quillai-network/quillshield_skills --skill oracle-flashloan-analysis -a claude-code`. Or copy the skill folder (plugins/oracle-flashloan-analysis/skills/oracle-flashloan-analysis in quillai-network/quillshield_skills) into .claude/skills/oracle-flashloan-analysis in your project. Claude Code loads it when a task matches its description.
Run `npx skills add quillai-network/quillshield_skills --skill oracle-flashloan-analysis -a codex`. Or copy the skill folder (plugins/oracle-flashloan-analysis/skills/oracle-flashloan-analysis in quillai-network/quillshield_skills) into .agents/skills/oracle-flashloan-analysis in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add quillai-network/quillshield_skills --skill oracle-flashloan-analysis -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/oracle-flashloan-analysis, .gemini/skills/oracle-flashloan-analysis, .github/skills/oracle-flashloan-analysis and .opencode/skills/oracle-flashloan-analysis in your project.
SKILL.md names no scripts, command-line tools or credentials: Oracle Flashloan Analysis is instructions for the agent only.
SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Oracle Flashloan Analysis is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
About 2.8k tokens (SKILL.md is roughly 11k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 3.7k tokens, read only when the agent opens those files.
Skills that share tags, products or a category with Oracle Flashloan Analysis: Aomi Transact (jeremylongshore/tons-of-skills-marketplace, 2.8k stars), Okx Cex Earn (okx/agent-skills, 187 stars), Aomi Transact (sickn33/agentic-awesome-skills, 47k stars) and Okx Defi Invest (nirholas/three.ws, 229 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
quillai-network (a GitHub organization) maintains it in quillai-network/quillshield_skills, which has 130 GitHub stars. The repository holds 11 skills in this directory. The repository was last updated on March 30, 2026.
Source: quillai-network/quillshield_skills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.