byreal-cli
Byreal DEX (Solana) all-in-one CLI: query pools/tokens/TVL, analyze pool APR & risk, open/close/claim CLMM positions, token swap, wallet & balance management. Use when user mentions Byreal, LP, liquidity, pools, DeFi positions, token swap, or Solana DEX operations.
How do I install this agent skill?
npx skills add https://github.com/byreal-git/byreal-agent-skills --skill byreal-cliIs this agent skill safe to install?
- Gen Agent Trust Hubpass
The skill provides an interface for the Byreal CLI, a tool for managing Solana DEX operations and liquidity positions. It accesses local wallet configuration files for transaction signing and fetches its operational documentation dynamically from the CLI tool's output, which presents a surface for indirect prompt injection. It also includes instructions for installing and updating the vendor-provided CLI tool.
- Socketpass
No alerts
- Snykwarn
Risk: MEDIUM · 1 issue
- ZeroLeakspass
Score: 93/100 · 2 sections analyzed
What does this agent skill do?
Byreal LP Management
Get Full Documentation
Always run these commands first to get complete, up-to-date documentation:
# Complete documentation (commands, parameters, workflows, constraints)
byreal-cli skill
# Structured capability discovery (all capabilities with params)
byreal-cli catalog list
# Detailed parameter info for a specific capability
byreal-cli catalog show <capability-id>
Installation
# Check if already installed
which byreal-cli && byreal-cli --version
# Install
npm install -g @byreal-io/byreal-cli
Check for Updates
byreal-cli update check
If an update is available:
byreal-cli update install
Credentials & Permissions
- Read-only commands (pool, token, tvl, stats): No wallet required
- Write commands (swap, position open/close/claim): Require wallet setup via
byreal-cli wallet setorbyreal-cli setup - Private keys are stored locally at
~/.config/byreal/keys/with strict file permissions (mode 0600) - The CLI never transmits private keys over the network — keys are only used locally for transaction signing
- AI agents should never ask users to paste private keys in chat; always direct them to run
byreal-cli setupinteractively
Hard Constraints
-o jsononly for parsing — when showing results to the user, omit it and let the CLI's built-in tables/charts render directly. Never fetch JSON then re-draw charts yourself.- Never truncate on-chain data — always display the FULL string for: transaction signatures (txid), mint addresses, pool addresses, NFT addresses, wallet addresses. Never use
xxx...yyyabbreviation. - Never display private keys - use keypair paths only
- Preview first with
--dry-run, then--confirm - Large amounts (>$1000) require explicit confirmation
- High slippage (>200 bps) must warn user
- Check wallet before write ops — run
wallet addressbefore any wallet-required command
How can the creator link this skill?
Add the canonical catalog link to the repository README so users can inspect current installs and available audits. The publishing guide covers the complete discovery path.
<a href="https://skillzs.dev/skills/byreal-git/byreal-agent-skills/byreal-cli">View byreal-cli on skillZs</a>