agirails-agent-payments

Warn

Audited by Socket on Feb 25, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The improved fragment is a thorough onboarding/documentation piece for AGIRAILS that coherently describes wallet/key management, on-chain escrow and instant payment flows, and integration patterns. While there is no executable payload in the fragment itself, the breadth of credential pathways and on-chain interactions presents meaningful supply-chain and operational risks if downstream implementations are insecure. The primary concerns are secure handling of keys/keystores, trusted SDK/adapters, and rigorous configuration/verification controls to prevent credential leakage and misrouting. With strict secret management, code signing, and dependency governance, this material remains a solid design/spec but requires robust downstream security controls.

Confidence: 75%Severity: 75%
Audit Metadata
Analyzed At
Feb 25, 2026, 06:00 AM
Package URL
pkg:socket/skills-sh/davila7%2Fclaude-code-templates%2Fagirails-agent-payments%2F@2f3a87cb0760835db191af00aece0dbd445c2322