gmgn-swap

Warn

Audited by Snyk on Mar 16, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). The skill is explicitly a crypto trading tool: it provides a CLI to "submit a token swap" and "query an order", requires GMGN_PRIVATE_KEY and GMGN_API_KEY, performs transaction signing ("CLI handles signing automatically"), and exposes parameters to set amounts, slippage, fees, gas, and chain. Those are direct blockchain wallet operations (sending transactions / executing trades). This is a specific financial execution capability (crypto/blockchain wallet swaps), not a generic tool.

Issues (1)

W009
MEDIUM

Direct money access capability detected (payment gateways, crypto, banking).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 16, 2026, 02:15 PM
Issues
1