pillar

Warn

Audited by Socket on Mar 18, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill is purpose-aligned for a crypto wallet, but it gives an AI agent autonomous mainnet financial powers, stores local signing keys, and sends signed operations to an insufficiently documented backend. This is high security risk from scope and real-world action potential, not confirmed malware.

Confidence: 81%Severity: 82%
Audit Metadata
Analyzed At
Mar 18, 2026, 11:22 PM
Package URL
pkg:socket/skills-sh/aibtcdev%2Fskills%2Fpillar%2F@44e571f54997a71ed6d0e3ae7a34d482e66f416a