zerion
github/BankrBot/skills#zerion
litmus-skill-v2 · 2026-06-30
graded at commit 65e9a9e · 2026-06-17
The zerion skill is graded A by polygraph under litmus-skill-v2, as of 2026-06-30, anchored to its content hash.
Self-reported “Interpreted crypto wallet data for AI agents. Use when an agent needs portfolio values, token positions, DeFi positions, NFT holdings, transaction history, PnL data, token prices, charts, gas prices, swap quotes, or DApp information across 41+ chains. Zerion transforms raw…” — the skill’s own SKILL.md description at the graded commit, not part of the grade.
A static safety grade — a deterministic scan of the skill’s SKILL.md and bundled files. An A means static-clean, not behavioral proof: a skill’s instructions are interpreted by an agent at runtime.
no bundled executable scripts
content hash · 0x11b71ce559…4b9e
Source · github.com/BankrBot/skills/tree/main/zerion
Watch for changes
This grade is a snapshot of the skill’s files at one commit. Get an email when a new commit changes zerion and polygraph re-runs the litmus — one message per change, one-click unsubscribe.
Monitor this skillReproduce this grade
The skill litmus is open and deterministic. Point it at the skill directory and compare the grade and content hash — a false grade is falsifiable, not merely disputable.
npx -p @polygraphso/litmus polygraphso-litmus-skill <skill-dir>Embed this badge
Drop it in the skill’s README, docs, or listing. It always shows the current grade and links back here.
[](https://www.polygraph.so/skill/github/BankrBot/skills/zerion)<a href="https://www.polygraph.so/skill/github/BankrBot/skills/zerion"><img src="https://www.polygraph.so/api/badge/skill?skill=github/BankrBot/skills/zerion" alt="polygraph grade"></a>[](https://www.polygraph.so/skill/github/BankrBot/skills/zerion)Questions
- What does the A skill grade mean for zerion?
- It’s a static safety grade(A/B/D/F) from a deterministic scan of the skill’s
SKILL.mdand bundled files. An A means static-clean — not behavioral proof, since a skill’s instructions are interpreted by an agent at runtime. - What did polygraph check?
- Three static checks: S-01 prompt-injection and context-poisoning, S-03 data-exfiltration instructions, and S-04 dangerous bundled commands. The full battery is in the methodology.
- How do I reproduce this grade?
- Run
npx -p @polygraphso/litmus polygraphso-litmus-skill <skill-dir>. The scan is open and deterministic, anchored to the skill’s content hash, so the same directory yields the same grade.