polygraph.so
A

signals

github/BankrBot/skills#signals

litmus-skill-v2 · 2026-06-25

graded at commit 65e9a9e · 2026-06-17

The signals skill is graded A by polygraph under litmus-skill-v2, as of 2026-06-25, anchored to its content hash.

Self-reported Transaction-verified trading signals on Base. Register agent as signal provider, publish trades with TX hash proof, consume signals from top performers via REST API. All track records verified against blockchain data. No fake performance claims. Triggers on: "publish signal",…” — the skill’s own SKILL.md description at the graded commit, not part of the grade.

A static safety grade — a deterministic scan of the skill’s SKILL.md and bundled files. An A means static-clean, not behavioral proof: a skill’s instructions are interpreted by an agent at runtime.

S-01 Prompt-injection / context-poisoningpass
S-03 Data-exfiltration instructionspass
S-04 Dangerous bundled commandspass

content hash · 0xbcd835d1c2…795c

Source · github.com/BankrBot/skills/tree/main/signals

Watch for changes

This grade is a snapshot of the skill’s files at one commit. Get an email when a new commit changes signals and polygraph re-runs the litmus — one message per change, one-click unsubscribe.

Monitor this skill

Reproduce this grade

The skill litmus is open and deterministic. Point it at the skill directory and compare the grade and content hash — a false grade is falsifiable, not merely disputable.

npx -p @polygraphso/litmus polygraphso-litmus-skill <skill-dir>

Embed this badge

Drop it in the skill’s README, docs, or listing. It always shows the current grade and links back here.

polygraph skill grade A
Markdown — badge
[![polygraph](https://www.polygraph.so/api/badge/skill?skill=github/BankrBot/skills/signals)](https://www.polygraph.so/skill/github/BankrBot/skills/signals)
HTML — badge
<a href="https://www.polygraph.so/skill/github/BankrBot/skills/signals"><img src="https://www.polygraph.so/api/badge/skill?skill=github/BankrBot/skills/signals" alt="polygraph grade"></a>
Markdown — card
[![polygraph](https://www.polygraph.so/api/badge/skill/card?skill=github/BankrBot/skills/signals)](https://www.polygraph.so/skill/github/BankrBot/skills/signals)

Questions

What does the A skill grade mean for signals?
It’s a static safety grade(A/B/D/F) from a deterministic scan of the skill’s SKILL.md and bundled files. An A means static-clean — not behavioral proof, since a skill’s instructions are interpreted by an agent at runtime.
What did polygraph check?
Three static checks: S-01 prompt-injection and context-poisoning, S-03 data-exfiltration instructions, and S-04 dangerous bundled commands. The full battery is in the methodology.
How do I reproduce this grade?
Run npx -p @polygraphso/litmus polygraphso-litmus-skill <skill-dir>. The scan is open and deterministic, anchored to the skill’s content hash, so the same directory yields the same grade.