pillar

Warn

Audited by Socket on Mar 13, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill's capabilities broadly match a crypto wallet/DeFi skill, but its footprint is high risk: it manages local signing keys, performs autonomous real-world financial actions, and submits signed operations to a backend whose direct API flow is not well verified from public official docs. This is not confirmed malware, but it is a dangerous wallet automation skill with substantial security and financial risk.

Confidence: 84%Severity: 81%
Audit Metadata
Analyzed At
Mar 13, 2026, 07:31 PM
Package URL
pkg:socket/skills-sh/aibtcdev%2Fskills%2Fpillar%2F@4d8889253418ee5d1167d76c9c4f6c4d06e2a6fb