send-tokens

Warn

Audited by Snyk on Feb 19, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). The skill is explicitly and specifically designed to move money: it provides a concrete command (fdx call transferTokens) to send/transfer tokens on EVM and Solana, accepts recipient addresses, amounts, token contract addresses, gas overrides, and requires wallet authentication and balance checks. The prompt explicitly says to use it for payments, tips, donations, and moving funds and details the execution flow. This is a direct financial execution capability (blockchain wallet transfers), not a generic tool.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Feb 19, 2026, 03:44 AM