Skip to content

srstack v0.1.1

Choose a tag to compare

@tomismeta tomismeta released this 16 Sep 02:32

Current prices, clearer valuations and explicit projection choices

srstack 0.1.1 adds a shared STANDARD price reader for research, gross accrued-balance valuation and optional current-price projection inputs. It remains an independent, read-only Agent Skill with no wallet or transaction path.

What improves for users and agents

  • Get STANDARD prices without broad web searches. The fixed reader checks the exact Robinhood canonical ETH/STANDARD pool and token identities. It reports USD and ETH prices with provider attribution, retrieval time and explicit limits.
  • Use a labelled availability fallback. DEX Screener remains primary; GeckoTerminal can supply the quote if the primary is temporarily unavailable. The fallback and reason are visible. Identity, malformed-data, certificate and access-denial failures are not bypassed. Explicit provider selection disables automatic switching.
  • Cross-check when requested. Compare the two fixed providers and see separate quotes and percentage differences. The reader never averages providers, chooses the higher quote or mixes one provider's USD price with the other's ETH price. Each invocation makes at most two bounded requests.
  • Value accrued balances without overstating proceeds. Current-value questions reuse the price reader's exact local multiplication. A charter snapshot supplies its accrued STANDARD-denominated ledger amount; the result is a gross market mark before withdrawal and trading costs, not wallet holdings, net exit proceeds or a charter resale value. Quantities and charter IDs are not sent to price providers.
  • Choose projection prices explicitly. When the price basis is missing, agents offer current prices, hypothetical prices or both before fetching. Supplied prices take precedence, complete offline examples stay offline, and holding a current price constant into the future remains an explicit assumption. The scenario engine remains offline.

Try Use srstack inspect price, Cross-check the current STANDARD price, or ask for the gross value of a supplied amount or public charter's accrued balance.

Update your installed copy

Download srstack-0.1.1.zip and verify it with SHA256SUMS. Preserve local customizations outside skill-discovery roots, then replace the old installation cleanly. Install the complete srstack/ folder, including release-manifest.json; do not overlay files, update only SKILL.md, or copy the full repository.

Use the attached runtime ZIP, not GitHub's automatic Source code archives. The separate audit archive is not an installable skill. Start a fresh conversation and confirm the loaded version, revision and path.

The helpers use Python 3.10+ and its standard library, with the documented filesystem protections. Public price reads require no API key. Planner schema/model and helper schema remain 1. No published v0.1.0 tag or asset was changed.

Scope and verification

Final release commit: a96b4d65ba530abb6b740b939b286ce366ff1a58.

  • Automated checks: 26 planner, 20 snapshot, 38 pricing and 14 packaging tests passed in final-commit CI on Python 3.10 and 3.14: 98 checks per job.
  • Native workflows: eight fresh Oh My Pi sessions exercised price-choice consent, supplied-price precedence, current and comparison cases, gross charter valuation, offline planning, explicit GeckoTerminal selection and provider cross-checking against the exported candidate. These are not native Hermes/OpenClaw model-session claims.
  • Live helper checks: both providers and cross-check output worked. A separately labelled controlled-primary-timeout probe exercised the real GeckoTerminal fallback without a third request; it does not claim an actual DEX Screener outage.
  • Hermes: pinned-source metadata/name/size checks, normal community quarantine/install, discovery and all 44 resources passed. Skills Guard returned safe/allowed without force, retaining one medium warning for the README's maintainer git clone example.
  • ClawHub: pinned-source local slug, metadata, full-file hashing and static moderation checks passed; moderation reported clean. This is not hosted registry acceptance. A non-fatal Bun tsconfig diagnostic remains disclosed.
  • Cisco Skill Scanner 2.1.0: strict offline static and behavioral checks reported no high/critical findings. Three medium warnings remain: nested documentation references and the necessary HTTPS primitives in the snapshot and price readers. Their dispositions are included; no rules were suppressed.
  • Gitleaks 8.30.1: no credentials detected in the runtime or all 17 reachable repository commits. Sanitized audit evidence and final release assets were also checked before publication.

Scanner checks used verified pinned tool artifacts, credential-free environments and tested kernel restrictions on personal-home reads, outside-workspace writes, candidate writes and scanner network access. Those controls describe the audit environment, not automatic enforcement on every installed host.

Prices are provider-reported indicative marks, not executable quotes. Neither consumed pool response supplies a price-observation timestamp; retrieval/cache age is not quote age, and separate provider/chain observations are not atomic. More digits or cross-check agreement does not establish independent truth. No independent human security audit, Solidity audit, hosted ClawHub submission, VirusTotal or remote LLM security scan is claimed. A skill prompt is not a sandbox; projections are not forecasts or guaranteed returns.

Release assets

  • srstack-0.1.1.zip — installable 44-file runtime under srstack/ (43 manifest-listed content files plus the manifest).
  • srstack-audit-0.1.1.zip — separate sanitized verification reports, tool provenance, retained findings and scope limits; not an installable skill.
  • SHA256SUMS — SHA-256 checksums for both archives.

Pinned entrypoint: https://raw.githubusercontent.com/tomismeta/srstack/a96b4d65ba530abb6b740b939b286ce366ff1a58/SKILL.md