AWP Skill
PassAudited by VirusTotal on May 9, 2026.
Findings (1)
The AWP skill bundle is a legitimate toolkit for the Agent Work Protocol, featuring strong security controls and transparent operations. Key indicators include explicit anti-phishing rules in SKILL.md (Rule 9), a two-layer contract allowlist in wallet-raw-call.mjs to prevent unauthorized contract interactions, and a state-machine-driven onboarding process via preflight.py. The background daemon (awp-daemon.py) is opt-in and read-only, focused on protocol monitoring, and all on-chain transactions require explicit user confirmation. No evidence of malicious intent, data exfiltration, or unauthorized execution was found.
