agentbox-provision

Warn

Audited by Socket on Mar 4, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The code fragment describes a coherent client-side workflow for provisioning and managing VM-backed AI agent gateways with Solana-based payments and wallet-based authentication. It uses standard external API endpoints and token-based sessions for operations like chat and terminal access. While the design appears legitimate, security considerations are notable: token exposure in responses, reliance on wallet-derived signatures for listing, and potential logging of sensitive data. The flow does not show explicit malicious activity but has a non-trivial attack surface due to multi-token handling and external payment integration. Recommended hardening: enforce short-lived tokens, minimize logging of tokens, scope tokens strictly per operation, verify domain ownership for API endpoints, and audit the x402 payment integration for refund/settlement controls.

Confidence: 75%Severity: 75%
Audit Metadata
Analyzed At
Mar 4, 2026, 03:14 PM
Package URL
pkg:socket/skills-sh/cascade-protocol%2Fagentbox%2Fagentbox-provision%2F@f2bd63560e96bc1377df5c783be55f151605fa9f