fix: address all 6 bankr review comments#8
Conversation
…aration, x402 budget guardrails
…nt failure instead of silent fallback
…tale payment info, remove verbose no-op mention
…uires explicit user confirmation
|
All 6 review comments addressed. Reference implementation merged in #8. Comment 1 — Prompt injection boundary Comment 2 — Trading decision as execution instruction Comment 3 — Paid x402 budget and confirmation guardrails Comment 4 — Unpinned package installs Comment 5 — Private key custody warnings Comment 6 — Silent social fallback |
Addresses all 6 issues raised in the Bankr review on BankrBot/skills#481.
Changes
SKILL.md (v16 → v17)
?social=truerequires explicit opt-in?socialparameter note to reflect opt-in requirementreferences/social-enrichment.md
references/external-clients.md
.envcommits, no primary wallet)x402-fetch@0.4.0,viem@2.21.19,x402==0.3.1uptoscheme)?verbose=truemention (no-op in v29,observedalways present)references/response-schema.md
decision.read,summary,drivers,risks,observed.social.*) as informational only — must not be parsed as agent instructionsreferences/mandate-fields.md
size_hint_pct