web3-security-analysis

Identifies on-chain security risks for tokens, transactions, and contracts.

17|45|Updated Jan 23, 2026
One-click install
npx skills add https://github.com/XSpoonAi/spoon-awesome-skill --skill web3-security-analysis-xspoonai
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: web3-security-analysis
Source: https://github.com/XSpoonAi/spoon-awesome-skill/tree/main/web3-data-intelligence/security-analysis
Command: npx skills add https://github.com/XSpoonAi/spoon-awesome-skill --skill web3-security-analysis-xspoonai

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill requires aiohttp, spoon_ai, pydantic, web3, eth_account, and includes scripts (resource) components.

What problem does it solve?

Protects Web3 users by quickly identifying token and contract security risks before deployment or interaction.

Core Features & Use Cases

  • Token security analysis using GoPlus to flag honeypots, blacklists, and risky ownership
  • Honeypot detection and transaction risk assessment with automated simulations
  • MEV protection guidance via Flashbots/MEV Blocker and risk-aware transaction workflows
  • Comprehensive address risk checks to screen counterparties and risk indicators

Quick Start

Ask SpoonOS to run a token security check on a given address to obtain an actionable risk report.

Frequently Asked Questions about web3-security-analysis

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I check a token for honeypot and security risks before interacting?

Token security risk analysis uses GoPlus integration to flag honeypots, blacklists, and risky ownership. You submit a contract address to run an automated check and receive an actionable risk report.

Can I simulate transactions to assess MEV exposure on Ethereum-compatible networks?

Transaction risk assessment applies automated simulations to evaluate MEV exposure. It integrates with Tenderly and optional Flashbots or MEV Blocker to provide risk-aware transaction workflows across Ethereum-compatible networks.

Do I need to configure environment variables to run Web3 contract risk assessments?

Executing on-chain risk analysis requires environment configuration to connect with GoPlus, Honeypot, and Tenderly APIs. You must set up these dependencies to generate comprehensive security reports.

What is the best way to screen counterparty addresses for risk indicators?

Comprehensive address risk checks screen counterparties by querying integrated security APIs. You input an address to identify risk indicators and evaluate transaction exposure before deployment.

Does Web3 security analysis support developers and auditors for on-chain risk analysis?

On-chain risk analysis applies to developers and auditors evaluating token-contract risks. It identifies MEV exposure, honeypots, and security vulnerabilities across Ethereum-compatible networks to generate actionable reports.

Why does my token security check fail to identify specific contract ownership risks?

Token security checks rely on GoPlus API data to flag risky ownership and blacklists. Limitations occur if the API lacks coverage for the specific Ethereum-compatible network or contract.