bybit-futures

Warn

Audited by Snyk on Feb 20, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). The skill is explicitly designed to interact with Bybit for perpetual futures trading: it requires BYBIT_API_KEY and BYBIT_API_SECRET and exposes commands that execute trades and manage positions (e.g., /bb long, /bb short, /bb close, /bb closeall, /bb tp, /bb sl, /bb leverage). These are direct market-order and position-management capabilities (move money / open/close positions), not generic tooling. Therefore it grants direct financial execution authority.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Feb 20, 2026, 08:51 PM