agentwallet

Warn

Audited by Socket on Mar 21, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The skill is broadly aligned with its wallet/payment purpose, but it handles raw wallet tokens, proxies arbitrary x402 requests through frames.ag, and enables fund-moving/signing actions with real-world consequences. I see no clear malware indicators or hidden exfiltration, yet the combination of credential access, proxy-mediated data flow, and financial autonomy makes this a medium-high risk skill that should only be used with strict user approval and minimal token exposure.

Confidence: 84%Severity: 68%
Audit Metadata
Analyzed At
Mar 21, 2026, 01:52 AM
Package URL
pkg:socket/skills-sh/frames-engineering%2Fskills%2Fagentwallet%2F@1ce4917e57034c8bd6babe9935b13312697b47ae