The bankr skill is graded A by polygraph under litmus-skill-v3, as of 2026-08-17, anchored to its content hash.
Graded under litmus-skill-v3; the current skill methodology is litmus-skill-v2. A re-run may change the grade.
Self-reported “AI-powered crypto trading agent, wallet API, and LLM gateway via natural language. Use when the user wants to trade crypto, trade tokenized stocks and ETFs (spot or leveraged), check portfolio balances (with PnL and NFTs), view token prices, search tokens, research token…” — the skill’s own SKILL.md description at the graded commit, not part of the grade.
A static safety grade — a deterministic scan of the skill’s SKILL.md and bundled files. An A means static-clean, not behavioral proof: a skill’s instructions are interpreted by an agent at runtime.
no dangerous commands in the body; no bundled scripts
content hash · 0xae06591e87…b694
Source · github.com/BankrBot/skills/tree/main/bankr
Watch for changes
This grade is a snapshot of the skill’s files at one commit. Get an email when a new commit changes bankr and polygraph re-runs the litmus — one message per change, one-click unsubscribe.
Monitor this skillReproduce this grade
The skill litmus is open and deterministic. Point it at the skill directory and compare the grade and content hash — a false grade is falsifiable, not merely disputable.
npx -p @polygraphso/litmus polygraphso-litmus-skill <skill-dir>Embed this badge
Drop it in the skill’s README, docs, or listing. It always shows the current grade and links back here.
[](https://www.polygraph.so/skill/github/BankrBot/skills/bankr)<a href="https://www.polygraph.so/skill/github/BankrBot/skills/bankr"><img src="https://www.polygraph.so/api/badge/skill?skill=github/BankrBot/skills/bankr" alt="polygraph grade"></a>[](https://www.polygraph.so/skill/github/BankrBot/skills/bankr)Questions
- What does the A skill grade mean for bankr?
- It’s a static safety grade(A/B/D/F) from a deterministic scan of the skill’s
SKILL.mdand bundled files. An A means static-clean — not behavioral proof, since a skill’s instructions are interpreted by an agent at runtime. - What did polygraph check?
- Three static checks: S-01 prompt-injection and context-poisoning, S-03 data-exfiltration instructions, and S-04 dangerous bundled commands. The full battery is in the methodology.
- How do I reproduce this grade?
- Run
npx -p @polygraphso/litmus polygraphso-litmus-skill <skill-dir>. The scan is open and deterministic, anchored to the skill’s content hash, so the same directory yields the same grade.