Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx skills add ChainGPT-org/chaingpt-claude-skill --skill tradegit clone --depth 1 https://github.com/ChainGPT-org/chaingpt-claude-skillWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/skills/chaingpt-org/chaingpt-claude-skill/trade)<a href="https://agentmods.dev/skills/chaingpt-org/chaingpt-claude-skill/trade"><img src="https://agentmods.dev/badge/skills/chaingpt-org/chaingpt-claude-skill/trade/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/skills/chaingpt-org/chaingpt-claude-skill/trade"><img src="https://agentmods.dev/badge/skills/chaingpt-org/chaingpt-claude-skill/trade.svg" alt="Reviewed on agentmods" width="80" height="20"></a>- NVIDIA SkillSpector warn
SkillSpector: 1 finding, up to medium
These are SkillSpector’s own severities. On a checked sample its high-severity flags on skills were ~96% false positives — a documented command, a public API, a “never do X” rule — so we show them as a caution to read, not a verdict. Why →
- medium Excessive Agency · line 31 Skill enables autonomous high-impact decisions without human-in-the-loop verification. Critical operations (destructive commands, financial transactions, data deletion) should require explicit user confirmation.Fix: Add human-in-the-loop confirmation for destructive, irreversible, or high-impact operations. Never auto-execute commands that modify files, send data, or alter system state.
What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00171 | $0.01527 |
| Opus 5 | $0.00086 | $0.00763 |
| Sonnet 5 | $0.00034 | $0.00305 |
| Haiku 4.5 | $0.00017 | $0.00153 |
Grade A, and why
trade scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 10d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 97 lines — stays where its author put it; the contents beside it link to each section on GitHub.
ChainGPT Trade Skill
You execute real mainnet DEX trades on behalf of the user. The plugin never holds keys. Your job is to:
- Run the pre-flight checks the user expects from a serious trading interface.
- Build the unsigned transaction.
- Hand it to the user's wallet to sign.
The mandatory pipeline (EVM)
chaingpt_research_token — confirm the user is buying the token they think
chaingpt_risk_token — GoPlus + Honeypot check on the OUT token (MANDATORY)
chaingpt_dex_quote — expected output, price impact, route
│ (surface to user with USD-denominated cost and slippage)
▼
chaingpt_dex_approve_tx — if inToken is ERC-20 and current allowance is insufficient (requires acknowledgeMainnet: true — approvals delegate spend authority)
│ (user signs + broadcasts the approval)
▼
chaingpt_dex_build_swap_tx — REFUSES mainnet unless acknowledgeMainnet=true
│ (user signs + broadcasts the swap)
▼
chaingpt_onchain_tx hash=… — confirm execution, surface received-amount
Pipeline for Solana is identical but two-step (no approval needed):
chaingpt_risk_token (on Solana outToken)
chaingpt_dex_jupiter_quote
chaingpt_dex_jupiter_build_swap_tx (requires acknowledgeMainnet)
Hard rules for mainnet
- NEVER call
chaingpt_dex_build_swap_txwithacknowledgeMainnet: trueunless the user has explicitly confirmed they want to swap on mainnet with the specific amounts and tokens you echoed back. - ALWAYS surface the price impact and USD cost from
chaingpt_dex_quotebefore asking for confirmation. - If
chaingpt_risk_tokenraises a honeypot or cannot-sell-all flag, REFUSE the swap. Surface the flag and require an explicit user override before re-running. - For >$1,000 trades, also call
chaingpt_audit_contracton the outToken's contract if it's a freshly-deployed or unverified contract. The audit gate is the ChainGPT-native moat. - For ERC-20 swaps, always insert the approval step. Skipping approval is the single most common cause of failed swaps.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 10d ago First seen · 97 lines · 171 tokens per session scan A 5638d9c10a3c
trade is a skill published in the GitHub repository ChainGPT-org/chaingpt-claude-skill (1 stars, last pushed today), licensed MIT. It adds 171 tokens to every session and 1,527 once invoked, about $0.0009 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other skills, from other repositories
perp-cli
Multi-DEX perpetual futures trading via the perp-cli command-line tool. Use when user asks to: trade perps, check funding rates, scan/execute arbitrage (perp-perp or spot-perp), run delta-neutral strategies, bridge USDC across chains, manage positions/orders/leverage, deposit/withdraw, hedge spot+perp, trade HIP-3…
propfund
Trade on PropFund, the decentralized on-chain prop firm for AI agents. Use this skill to get funded with the liquidity pool's capital and trade without risking your own bankroll — pass a transparent evaluation, then place leveraged long/short trades with mandatory stop-loss/take-profit and on-chain risk limits, and…
suwappu
Build with the Suwappu REST API: cross-chain quotes, simulation, self-custody or managed swaps, managed-wallet portfolio/prices, Polymarket research and orders, Hyperliquid market research, and Morpho lending-market research.
suwappu-dex
Use Suwappu's hosted MCP server for cross-chain quotes, swap simulation and unsigned transaction preparation, managed-wallet portfolio reads, prices, prediction-market research, Hyperliquid research, and Morpho market data.
ethereum-defi
Ethereum DeFi skill — query balances, get Chainlink prices, estimate gas, resolve ENS names, call smart contracts, ABI-encode functions, interact with ERC-8004 agent registry, query EAS attestations.
defi-protocols
DeFi protocol authority — flashloans, AMM design, lending markets, concentrated liquidity, MEV, triangular and cross-DEX arbitrage, stablecoin depeg dynamics, and on-chain capital routing across Uniswap V3, Aerodrome, Balancer, Curve, and Aave V3 on Ethereum, Base, Arbitrum, Optimism, and Polygon.