← Back to Skills Marketplace
inkoak23-code

Trench

by inkoak23-code · GitHub ↗ · v0.1.0
cross-platform ⚠ suspicious
532
Downloads
5
Stars
1
Active Installs
1
Versions
Install in OpenClaw
/install trench
Description
Fast meme coin trading execution for AI agents. Snipe new token launches, execute rapid buys/sells on Solana DEXs (Jupiter, Raydium, Pump.fun), with MEV prot...
Usage Guidance
Do not provide private keys, WIFs, or permanent API secrets to this skill. The package is currently a placeholder: it advertises trading and wallet management but contains no code or declared credential requirements, which is inconsistent. Before installing or using it: (1) ask the author for the exact code and install steps; (2) require a minimal, auditable code review that shows how keys are stored/used; (3) insist on explicit environment variables and safe signing workflow (e.g., hardware wallet or remote signer) rather than plain private keys; (4) if you test, use a throwaway account and tiny funds in a sandboxed environment; (5) prefer skills from known authors or with verifiable source and release artifacts. If the skill later adds install steps that download archives or binaries, treat that as higher risk and re-evaluate.
Capability Analysis
Type: OpenClaw Skill Name: trench Version: 0.1.0 The skill bundle describes a 'trench' skill for fast meme coin trading on Solana. The `SKILL.md` outlines capabilities like rapid buy/sell, sniping, MEV protection, rug detection, and position management, all of which align with its stated purpose. There is no evidence of malicious intent, such as unauthorized data exfiltration, backdoor installation, prompt injection attempts to subvert the agent, or obfuscation. While the domain of automated cryptocurrency trading carries inherent financial risk, the skill's description and planned features do not indicate malicious behavior.
Capability Assessment
Purpose & Capability
The skill advertises executing trades, Jito bundle submission, MEV protection, multi-wallet management and API integrations, yet the registry entry declares no required environment variables, no binaries, and no install. A trading execution skill would reasonably need RPC endpoints, wallet private keys (or signing capability), and likely API keys — their absence is a mismatch.
Instruction Scope
SKILL.md is high-level and largely a placeholder. It outlines scripts (buy.py, snipe.py, safety.py) and capabilities but contains no concrete runtime commands or safe handling instructions. It also references wallet concepts (example: 'WIF position') and external APIs (Rugcheck, DexScreener, Jito), which implies access to secrets and network resources; the instructions are vague and grant broad agent discretion.
Install Mechanism
There is no install spec and no code files present, so currently nothing would be written to disk by installing the skill — that lowers immediate risk. However, the SKILL.md describes scripts and a non-trivial architecture that are missing: future releases could introduce high-risk install steps (downloads, native binaries, or wallet integrations).
Credentials
The functionality described inherently requires sensitive credentials (private keys/WIF, RPC provider URLs, possibly API keys for Rugcheck/DexScreener) but the skill declares none. That discrepancy is worrying: either the skill will later ask for secrets out-of-band, or it omits crucial security information. Requesting or handling private keys without explicit, auditable code is a red flag.
Persistence & Privilege
always:false (normal). The skill allows autonomous invocation (platform default). While autonomous invocation alone is not a violation, combining it with the ability to execute trades and manage wallets increases impact if the skill is later updated with code that can act on funds — exercise extra caution before granting autonomous execution.
How to Use
  1. Make sure OpenClaw is installed (local or Docker)
  2. Run the install command in chat: /install trench
  3. After installation, invoke the skill by name or use /trench
  4. Provide required inputs per the skill's parameter spec and get structured output
Version History
v0.1.0
Initial placeholder - meme coin trading execution skill for AI agents
Metadata
Slug trench
Version 0.1.0
License
All-time Installs 1
Active Installs 1
Total Versions 1
Frequently Asked Questions

What is Trench?

Fast meme coin trading execution for AI agents. Snipe new token launches, execute rapid buys/sells on Solana DEXs (Jupiter, Raydium, Pump.fun), with MEV prot... It is an AI Agent Skill for Claude Code / OpenClaw, with 532 downloads so far.

How do I install Trench?

Run "/install trench" in the OpenClaw or Claude Code chat to install it in one step — no extra setup required.

Is Trench free?

Yes, Trench is completely free (open-source). You can download, install and use it at no cost.

Which platforms does Trench support?

Trench is cross-platform and runs anywhere OpenClaw / Claude Code is available (cross-platform).

Who created Trench?

It is built and maintained by inkoak23-code (@inkoak23-code); the current version is v0.1.0.

💬 Comments