Source profileQuality 53/100

affaan-m/ECC/docs/ja-JP/skills/defi-amm-security/SKILL.md

defi-amm-security

Review defi-amm-security's use cases, installation, workflow, and original source instructions.

Source repository stars
234,327
Declared platforms
0
Static risk flags
0
Last source update
2026-07-27
Source checked
2026-07-28

Decision brief

What it does—and where it fits

自動マーケットメーカー(AMM)スマートコントラクトのセキュリティパターンと監査チェックリスト。

Best for

    Not for

    • Tasks that require unconfirmed production actions or broad system permissions.
    • Environments where the pinned source and install steps cannot be inspected.

    Compatibility matrix

    Platform support, with evidence labels

    PlatformStatusEvidenceWhat to check
    CodexNot declaredNo explicit evidencePortability before use
    Claude CodeNot declaredNo explicit evidencePortability before use
    CursorNot declaredNo explicit evidencePortability before use
    Gemini CLINot declaredNo explicit evidencePortability before use
    Open the compatibility checker

    Installation

    Inspect first. Install second.

    The source command is displayed only when detected. A safe inspection prompt is always available so your agent can explain every action before execution.

    Source-detected install commandSource
    npx skills add https://github.com/affaan-m/ECC --skill "docs/ja-JP/skills/defi-amm-security"
    Safe inspection promptEditorial

    Inspect the Agent Skill "defi-amm-security" from https://github.com/affaan-m/ECC/blob/4e973d3eaf92d97f8d2e2d8abb39d8bdc8711b38/docs/ja-JP/skills/defi-amm-security/SKILL.md at commit 4e973d3eaf92d97f8d2e2d8abb39d8bdc8711b38. List every install step, command, network request, credential, file read/write, external action, and rollback step. Explain whether it fits my task. Do not install or execute anything until I approve.

    Workflow

    What the source asks the agent to do

    1. 01

      使用時期

      Uniswap、Curve、BalancerなどのようなAMMコントラクトをレビュー

      Uniswap、Curve、BalancerなどのようなAMMコントラクトをレビュースワップ関数、ミント、バーンロジックでセキュリティの問題を検出フラッシュローン、価格操作脆弱性を特定
    2. 02

      一般的な脆弱性

      ローンが同一ブロック内で返却されたと仮定するコントラクトを攻撃。

      ローンが同一ブロック内で返却されたと仮定するコントラクトを攻撃。
    3. 03

      1. フラッシュローン攻撃

      ローンが同一ブロック内で返却されたと仮定するコントラクトを攻撃。

      ローンが同一ブロック内で返却されたと仮定するコントラクトを攻撃。

    Permission review

    Static risk signals and limitations

    No configured static risk pattern was detected

    This is not proof of safety. Runtime behavior, indirect dependencies, and hidden external systems are outside the static scan.

    Evidence record

    Why each signal appears

    EvidenceSourceComputedTestedEditorial
    SignalValueEvidence typeMeaning
    Quality score53/100ComputedDocumentation, specificity, maintenance, and trust rules
    Repository stars234,327SourceRepository attention, not individual Skill quality
    Compatibility0 platformsSourceDeclared in the catalog source record
    Usage guidecatalog recordEditorialGenerated or reviewed according to the visible evidence level

    Pinned source

    Provenance and original SKILL.md

    Repository
    affaan-m/ECC
    Skill path
    docs/ja-JP/skills/defi-amm-security/SKILL.md
    Commit
    4e973d3eaf92d97f8d2e2d8abb39d8bdc8711b38
    License
    MIT
    Collected
    2026-07-28
    Default branch
    main
    View the original SKILL.md

    DeFi AMM セキュリティ

    自動マーケットメーカー(AMM)スマートコントラクトのセキュリティパターンと監査チェックリスト。

    使用時期

    • Uniswap、Curve、BalancerなどのようなAMMコントラクトをレビュー
    • スワップ関数、ミント、バーンロジックでセキュリティの問題を検出
    • フラッシュローン、価格操作脆弱性を特定
    • DeFiプロトコルの経済セキュリティをテスト

    一般的な脆弱性

    1. フラッシュローン攻撃

    ローンが同一ブロック内で返却されたと仮定するコントラクトを攻撃。

    2. スリッページ不足

    ユーザーが予期しない不利な価格変更を受ける。

    3. 再入攻撃

    外部呼び出し後の状態チェック。

    4. 価格操作

    オンチェーン価格参照の信頼不足。

    セキュリティチェックリスト

    • すべての価格参照はオラクルから取得
    • フラッシュローンは考慮(価格を信頼しない)
    • スリッページ保護が実装
    • チェック・エフェクト・相互作用パターン使用
    • 再入保護(ミューテックス/チェック付き)
    • 整数オーバーフロー/アンダーフロー処理
    • アクセス制御とロール分離

    詳細については、ドキュメントを参照してください。

    Alternatives

    Compare before choosing