cobo-agentic-wallet-prod

Warn

Audited by Socket on Mar 21, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

Purpose and capabilities are aligned: this is plainly a production crypto-wallet/DeFi operations skill. Main risk comes from enabling real fund movement and trading by an AI agent, plus bootstrap installing external wallet/TSS tooling from script-defined sources. The data flows appear same-org Cobo endpoints rather than an obvious credential-harvesting proxy, so this is high-risk operationally but not confirmed malicious.

Confidence: 90%Severity: 82%
Audit Metadata
Analyzed At
Mar 21, 2026, 10:58 AM
Package URL
pkg:socket/skills-sh/CoboGlobal%2Fcobo-agentic-wallet%2Fcobo-agentic-wallet-prod%2F@819e3c1977181ef651ceb14b158a1e892b96b5c9