Atlas / Skills / bankrbot / Agenticbets

AgenticbetsCAUTION

skills/bankrbot/agenticbets

Bankr Skills equip builders with plug-and-play tools to build more powerful agents.

Verdict
CAUTION
Grade
B
Trust score
89 /100
Version
—
Hosts
1 documented
License
—
Stars
1,202
01

Overview

Bankr Skills equip builders with plug-and-play tools to build more powerful agents.

Read from source at commit 4029e336cef5OBSERVED · 2026-10-09
02

Host compatibility

What the documentation claims. We have not run a compatibility test.

HostStatusNotes
cursormentioned
03

What it tells the agent

The instruction file, verbatim from the audited commit — this is the text the model reads, and the surface the audit's instruction layer examines. Quoted here so you can judge it without cloning anything.

---
name: agenticbets
description: Place prediction bets on token prices on Base via AgenticBets. Use when the user wants to bet UP or DOWN on whether a token price will go up or down, check prediction market odds, view open betting rounds, or claim winnings from settled rounds. Supports all tokens with active markets on AgenticBets (AGBETS, CLAWD, MOLT, WCHAN, and more). Uses Bankr Submit API to execute bet and claim transactions on Base.
metadata:
  {
    "clawdbot":
      {
        "emoji": "🎲",
        "homepage": "https://agenticbets.dev",
        "requires": { "bins": ["python3", "bankr"] },
      },
  }
---

# AgenticBets

Prediction markets on Base. Bet UP or DOWN on token prices with USDC.

## When To Use

Use AgenticBets when the user wants to:
- **Bet on whether a token price goes up or down** (e.g., "bet $5 UP on AGBETS")
- **Check prediction market odds** (e.g., "what are the odds on AGBETS?")
- **See which markets are open** (e.g., "what prediction markets can I bet on?")
- **Claim winnings** from settled rounds
- **Check their bet status** or claimable winnings

## Prerequisites

### Bankr CLI

Install the Bankr CLI and log in to get an API key:

```bash
bun install -g @bankr/cli
# or: npm install -g @bankr/cli
```

### Bankr API Key

The scripts read the API key from `~/.bankr/config.json` (or `$BANKR_CONFIG` if set).

**Option A: CLI login (recommended)**

```bash
# Step 1 — send OTP
bankr login email [email protected]

# Step 2 — verify and generate key with write access
bankr login email [email protected] --code 123456 --accept-terms --key-name "AgenticBets" --read-write
```

**Option B: Web login**

1. Visit [bankr.bot/api-keys](https://bankr.bot/api-keys)
2. Sign in with email + OTP
3. Generate an API key with **Wallet API** write access enabled

The API key must have **write access** (`walletApiEnabled`, not `readOnly`) to place bets and claim winnings. Read-only keys can still list markets and check odds.

### USDC Balance

Make sure your Bankr wallet has USDC on Base before betting. Check with:

```bash
bankr wallet portfolio
```

## Quick Start

### List Open Markets

```
What prediction markets are open on AgenticBets?
```

```bash
scripts/agenticbets.py list
```

### Check Odds

```
What are the odds on AGBETS?
```

```bash
scripts/agenticbets.py odds AGBETS
```

### Place a Bet

```
Bet $5 UP on AGBETS
```

```bash
scripts/agenticbets.py bet AGBETS up 5
```

### Claim Winnings

```
Claim my AgenticBets winnings for AGBETS epoch 42
```

```bash
scripts/agenticbets.py claim AGBETS 42
```

## Script Usage

### agenticbets.py

Single script that handles all AgenticBets operations. Reads and writes use the Bankr Wallet API.

```
scripts/agenticbets.py <command> [args...]
```

**Commands:**

| Command | Args | Description |
|---|---|---|
| `list` | `[status]` | List markets. Status: `all`, `open`, `locked`, `settled` (default: `open`) |
| `odds` | `<symbol>` | Show bull/bear odds and pool size for a market |
| `info` | `<symbol>` | Detailed market info including contract, epoch, time to lock |
| `bet` | `<symbol> <up\|down> <amount>` | Place a bet. Amount in USDC (e.g., `5` for $5) |
| `claim` | `<symbol> <epoch> [epoch...]` | Claim winnings for settled epochs |
| `claimable` | `<symbol> <epoch>` | Check if an epoch is claimable |

**Environment:**

| Variable | Default | Description |
|---|---|---|
| `BANKR_CONFIG` | `~/.bankr/config.json` | Path to Bankr config file containing `apiKey` |

## How It Works

### Prediction Market Flow

1. A **round** opens for a token (e.g., $AGBETS)
2. Users bet **UP** (bull — price goes up) or **DOWN** (bear — price goes down) with USDC
3. Betting window closes (typically 5 minutes)
4. Price is **locked** at close
5. After the round duration, price is checked again
6. If price went up → bull wins. If down → bear wins.
7. Winners split the entire pool proportional to their bet size (minus 3% fee)

### Transaction Flow (via Bankr Submit API)

All on-chain transactions go through the Bankr Wallet API:

1. Script fetches market data from `GET https://agenticbets.dev/api/bankr/markets`
2. Script gets wallet address from `GET https://api.bankr.bot/wallet/me`
3. For bets:
   - Approve USDC spend: `POST https://api.bankr.bot/wallet/submit` with ERC20 `approve()` calldata
   - Place bet: `POST https://api.bankr.bot/wallet/submit` with `bet()` calldata
4. For claims: `POST https://api.bankr.bot/wallet/submit` with `claim()` calldata
5. All transactions use `waitForConfirmation: true` and include a human-readable `description`

### Bankr Submit API Reference

**Endpoint:** `POST https://api.bankr.bot/wallet/submit`

**Headers:**
```
X-API-Key: bk_YOUR_API_KEY
Content-Type: application/json
```

**Request body:**
```json
{
  "transaction": {
    "to": "0xContractAddress",
    "chainId": 8453,
    "data": "0xCalldata...",
    "value": "0"
  },
  "description": "Place $5 UP bet on AGBETS",
  "waitForConfirmation": true
}
```

**Success response:**
```json
{
  "success": true,
  "transactionHash": "0x...",
  "status": "success",
  "blockNumber": "12345678",
  "signer": "0xYourWalletAddress",
  "chainId": 8453
}
```

**Wallet info:** `GET https://api.bankr.bot/wallet/me` returns the wallet address and supported chains.

## Contracts

| Contract | Address | Tokens |
|---|---|---|
| BankrBetsPrediction V1 | `0xABADeb002247f2bd908Eeedb32918aEc304A0233` | CLAWD, MOLT, WCHAN |
| BankrBetsPrediction V2 | `0x2CD785Ba87e0841A8458141bc43d23a56a00557f` | AGBETS |
| USDC (Base) | `0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913` | 6 decimals |

### Contract Functions

**bet(address _token, uint256 _amount, uint8 _position)**
- `_token` — token contract address
- `_amount` — USDC amount in raw units (multiply by 1e6)
- `_position` — `0` = Bull (UP), `1` = Bear (DOWN)
- Selector: `0x37a02e62`

**claim(address _token, uint256[] _epochs)**
- `_token` — token contract address
- `_epochs` — array of epoch numbers to claim
- Selector: `0x45718278`

**claimable(address _to
04

Trust audit

CAUTIONgrade B · trust 89/100 Install with care. The audit found things worth knowing before you trust its output.

LayerWhat it checksResult
L0Provenance & inventoryPASS
L1Static analysis of the codePASS
L2Instruction surface (what it tells the agent)FAIL
L3Class-specific surfacePASS
L4Behavioural (sandbox)SKIPPED

What the source does

Filesystem
none-observed
Network
declared (5 observation(s))
Shell
none-observed
Dependencies
pinned
Secrets in source
none-found

Findings (2)

HIGHPrompt injection · prompt.credential_read · CWE-94, CWE-1427
SKILL.md:41
The scripts read the API key from `~/.bankr/config.json` (or `$BANKR_CONFIG` if set).
Why it matters. asks the agent to read credentials
INFOPrompt injection · prompt.credential_read · CWE-94, CWE-1427
references/agent-usage.md:97
| `Read-only API key` | API key lacks write permission | Regenerate with `--read-write` |
Why it matters. asks the agent to read credentials

Gates applied: no_behavioural_pass.

Audited 2026-10-09 · audit v0.4.1 · source sha 4029e336cef5full audit observations/trust-audit/skill/bankrbot__agenticbets.json · Report an issue / request a re-scan
05

Audit history

Every audit this skill has had.

DateSourceVerdictGradeScoreChange
2026-10-094029e336cef5CAUTIONB89first audit
06

Questions

What does the Agenticbets skill do?

Bankr Skills equip builders with plug-and-play tools to build more powerful agents.

Is Agenticbets safe to install?

With care. The audit graded it B (89/100) and found 2 things worth knowing before you trust this skill, listed below with the exact line each was found on.

What can Agenticbets access on my machine?

The audit observed that it reaches the network. Each of those is consistent with what it says it does. Secrets in the source: none found.

Which assistants does Agenticbets work with?

Its documentation mentions cursor. That is what the text claims, not a compatibility test we ran.

How current is this page?

The grade is for one exact copy of the source (4029e336cef5), read on 2026-10-09. The repository is watched, and a new audit runs when it changes — this is the first audit.

Advertisement