cobo-agentic-wallet-prod
Warn
Audited by Socket on Mar 21, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
Purpose and capabilities are aligned: this is plainly a production crypto-wallet/DeFi operations skill. Main risk comes from enabling real fund movement and trading by an AI agent, plus bootstrap installing external wallet/TSS tooling from script-defined sources. The data flows appear same-org Cobo endpoints rather than an obvious credential-harvesting proxy, so this is high-risk operationally but not confirmed malicious.
Confidence: 90%Severity: 82%
Audit Metadata