send-usdc — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited send-usdc (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
Use the npx [email protected] send command to transfer tokens from the wallet to any address on Base, Polygon, or Solana.
npx [email protected] statusIf the wallet is not authenticated, refer to the authenticate-wallet skill.
npx [email protected] send <amount> <recipient> [--chain <chain>] [--asset <asset>] [--json]| Argument | Description |
|---|---|
amount | Amount to send: '$1.00', '1.00', or atomic units (1000000 = $1). Always single-quote amounts that use $ to prevent bash variable expansion. If the number looks like atomic units (no decimal or > 100), treat as atomic units. Assume that people won't be sending more than 100 USDC the majority of the time |
recipient | Ethereum address (0x...), ENS name (vitalik.eth), or Solana address (Base58) |
| Option | Description |
|---|---|
--chain <name> | Blockchain network: base, polygon, solana (default: base) |
--asset <symbol> | Token to send: usdc, eth, pol, sol (default: usdc) |
--json | Output result as JSON |
Before constructing the command, validate all user-provided values to prevent shell injection:
^\$?[\d.]+$ (digits, optional decimal point, optional $ prefix). Reject if it contains spaces, semicolons, pipes, backticks, or other shell metacharacters.0x hex address (^0x[0-9a-fA-F]{40}$), an ENS name (^[a-zA-Z0-9.-]+\.eth$), or a Solana address (^[1-9A-HJ-NP-Za-km-z]{32,44}$). Reject any value containing spaces or shell metacharacters.base, polygon, solana. Reject any other value.usdc, eth, pol, sol. Reject any other value.Do not pass unvalidated user input into the command.
# Send $1.00 USDC to an address on Base (default)
npx [email protected] send 1 0x1234...abcd
# Send $0.50 USDC to an ENS name
npx [email protected] send 0.50 vitalik.eth
# Send with dollar sign prefix (note the single quotes)
npx [email protected] send '$5.00' 0x1234...abcd
# Send ETH on Base
npx [email protected] send 0.01 0x1234...abcd --asset eth
# Send USDC on Polygon
npx [email protected] send 1 0x1234...abcd --chain polygon
# Send USDC to a Solana address
npx [email protected] send 1 AxW7...5fGz --chain solana
# Get JSON output
npx [email protected] send 1 vitalik.eth --jsonENS names are automatically resolved to addresses via Ethereum mainnet. The command will:
npx [email protected] status to check, npx [email protected] auth login to sign in, see skill authenticate-wallet for more information)npx awal balance to check)Common errors:
awal auth login <email> firstawal balance--chain solana when sending SOL~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.