polygon-agent-kit

Warn

Audited by Socket on Apr 14, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

Purpose and capabilities are internally consistent for a Polygon wallet/DeFi agent skill, with no clear sign of deceptive data routing or hidden exfiltration. The main risks are direct GitHub installation, auto-loading sensitive wallet credentials from disk, and enabling high-impact financial transactions; overall this looks purpose-aligned but high-risk to operate, not confirmed malware.

Confidence: 82%Severity: 71%
Audit Metadata
Analyzed At
Apr 14, 2026, 10:20 PM
Package URL
pkg:socket/skills-sh/0xPolygon%2Fpolygon-agent-cli%2Fpolygon-agent-kit%2F@bca1e57526df0afef691edcf549796b712319c03