aixyz-on-openclaw

Warn

Audited by Socket on Mar 22, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The core guide is mostly coherent for building and monetizing an aixyz agent, and most installs/data flows match that purpose. Risk is elevated by transitive skill installation, remote installer use, and handling of wallet private keys for on-chain actions; these are proportionate to the stated goal but still materially increase trust and security exposure.

Confidence: 84%Severity: 61%
Audit Metadata
Analyzed At
Mar 22, 2026, 12:54 PM
Package URL
pkg:socket/skills-sh/agentlyhq%2Faixyz%2Faixyz-on-openclaw%2F@b7c416901711f72a1a1a7b46baf04ef0661c57fd