aster-api-account-v3

Warn

Audited by Snyk on Mar 6, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). The skill exposes a signed API for an exchange/futures account with explicit endpoints that perform financial actions: e.g., POST /fapi/v3/asset/wallet/transfer (spot↔futures transfers), POST /fapi/v3/positionMargin (add/reduce margin), POST /fapi/v3/leverage (set leverage), POST /fapi/v3/marginType (change margin type), and endpoints that change account/position modes. These are specific, account-level money/position-manipulation operations (not generic browser or HTTP tooling) and therefore constitute direct financial execution capability.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 6, 2026, 03:06 PM