erc-8004
Warn
Audited by Socket on Feb 26, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
The fragment is a documentation/spec/resource bundle for ERC-8004 agent registration workflows, IPFS uploads, and on-chain registration. It is coherent with its stated purpose and presents multiple integration options (UI, IPFS, HTTP URL, on-chain data). The primary security concerns relate to credential management (private keys and JWTs in environment variables) and trust dependencies on IPFS/HTTP-hosted data sources. No active malware or covert data exfiltration is evident in the fragment itself, but proper secret management, validation of externally hosted registration data, and secure handling of signing keys are essential for safe deployment.
Confidence: 75%Severity: 75%
Audit Metadata