gate-mcp-openclaw-installer

Warn

Audited by Socket on Apr 2, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The skill’s purpose broadly matches its capabilities, but it forwards exchange credentials and OAuth tokens through `mcporter` and remote `gatemcp.ai` endpoints, uses unpinned runtime installs, and exposes asset-affecting trading/DEX functions. This is not confirmed malware, but the trust and credential-routing model is broader than a simple installer and merits caution.

Confidence: 78%Severity: 66%
Audit Metadata
Analyzed At
Apr 2, 2026, 12:25 AM
Package URL
pkg:socket/skills-sh/gate%2Fgate-skills%2Fgate-mcp-openclaw-installer%2F@c122afba32e5e3008aa1b7e04a6dc9d28219ceb8