Install
$ agentstack add skill-chu2bard-pinion-os-broadcast ✓ scanned · ✓ verified, works with Claude Code, Cursor, and more.
Security review
✓ PassedNo issues found. Passed automated security review. · v0.1.0 How review works →
- ✓ Prompt-injection patterns
- ✓ Secret / credential exfiltration
- ✓ Dangerous shell & filesystem operations
- ✓ Untrusted network calls
- ✓ Known-malicious package signatures
What it can access
- ● Network access Used
- ✓ Filesystem access No
- ✓ Shell / process execution No
- ✓ Environment & secrets No
- ✓ Dynamic code execution No
From automated source analysis of v0.1.0. “Used” means the capability is present in the source — more access means more to trust, not that it’s unsafe.
Verified badge
Passed review? Show it. Paste this badge into your README, it links to the public security report.
Reliability & compatibility
Declared compatibility
Compatibility is declared by the source manifest. End-to-end runtime verification is coming, see below.
We're building live execution health for every listing: tool-call success rate, median latency, uptime, and last-checked timestamps, measured, not self-reported. It isn't live yet, so we don't show numbers we can't stand behind.
How agent discovery & health will work →About
Sign & Broadcast
Signs an unsigned transaction with the provided private key and broadcasts it to Base mainnet. Returns the transaction hash and Basescan link.
Endpoint
POST https://pinionos.com/skill/broadcast
Price: $0.01 USDC per call (x402 on Base)
Request Body
{
"tx": {
"to": "0x7a21...",
"value": "0xb1a2bc2ec50000",
"data": "0x",
"chainId": 8453
},
"privateKey": "0x4b3f..."
}
| Field | Type | Required | Description | |------------|--------|----------|------------------------------------------------------------| | tx | object | yes | Unsigned transaction object (from /send or /trade skills) | | tx.to | string | yes | Recipient or contract address | | tx.value | string | no | ETH value in hex (default: "0x0") | | tx.data | string | no | Calldata in hex (default: "0x") | | tx.chainId | number | yes | Must be 8453 (Base mainnet) | | privateKey | string | yes | Sender's private key (0x + 64 hex chars) |
Example Request
curl -X POST https://pinionos.com/skill/broadcast \
-H "Content-Type: application/json" \
-d '{
"tx": {
"to": "0x7a21...",
"value": "0xb1a2bc2ec50000",
"data": "0x",
"chainId": 8453
},
"privateKey": "0x4b3f..."
}'
The first request returns HTTP 402 with payment requirements. Sign a USDC TransferWithAuthorization (EIP-3009) and retry with the X-PAYMENT header.
Example Response
{
"txHash": "0xabc123...",
"explorerUrl": "https://basescan.org/tx/0xabc123...",
"from": "0x1234...",
"to": "0x7a21...",
"network": "base",
"status": "submitted",
"note": "Transaction submitted to Base. It may take a few seconds to confirm.",
"timestamp": "2026-02-17T12:00:00.000Z"
}
When to Use
- After calling
/sendto transfer ETH or USDC -- pass the returnedtxobject here with the sender's private key to execute it. - After calling
/tradeto swap tokens -- broadcast theapprovetx first (if present), wait for confirmation, then broadcast theswaptx. - Any time you have an unsigned Base transaction and need to sign + broadcast it.
Typical Flow
- Call
/sendor/tradeto get an unsigned transaction. - Ask the user for their private key.
- Call
/broadcastwith the unsigned tx and the private key. - Return the tx hash and Basescan link to the user.
Security
- The private key is sent over HTTPS and used only to sign the transaction. It is not stored or logged.
- Only use this with wallets you control and amounts you're comfortable with.
- The sender's wallet needs ETH on Base for gas fees.
Source & license
This open-source skill is cataloged on AgentStack and links to its original source — we do not rehost the code.
- Author: chu2bard
- Source: chu2bard/pinion-os
- License: MIT
Install and usage instructions live in the source repository linked above.
Reviews
No reviews yet, be the first.
Write a review
Versions
- v0.1.0 Imported from the upstream source.