citadel-low-latency-systems
Warn
Audited by Snyk on Mar 9, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill is explicitly and narrowly focused on building trading/market-making systems (Citadel-style low-latency market making). It references executing millions of trades, market making engines, an order book implementation, and low-latency infra tailored to trading execution. Although it does not show a specific third-party payment gateway or banking API, its primary and explicit purpose is financial trading (i.e., placing/executing market orders and managing order books), which qualifies as Direct Financial Execution authority under the "market orders" category.
MEDIUM W013: Attempt to modify system services in skill instructions.
- Attempt to modify system services in skill instructions detected (high risk: 1.00). The skill explicitly instructs modifying system configuration (GRUB cmdline, /sys files, disabling HT/C-states, echoing to sysfs, kernel-bypass setup) and recommends actions that require root privileges and change machine state, so it pushes the agent to perform privileged, state-changing operations.
Audit Metadata