bingx-copytrade-swap
Warn
Audited by Snyk on Apr 22, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill is explicitly a crypto exchange trading integration (BingX Copy Trade USDT‑M Perpetual Contracts) with authenticated HMAC SHA256 calls and write endpoints that perform trading actions: e.g., /swap/trace/closeTrackOrder (close position), /swap/trace/setTPSL (set TP/SL), and /PFutures/setCommission (update commission). These are direct trading/transaction operations on a financial market (crypto derivatives) — not generic tooling. Therefore it grants Direct Financial Execution authority.
Issues (1)
W009
MEDIUMDirect money access capability detected (payment gateways, crypto, banking).
Audit Metadata