ai-trader-copytrade

Warn

Audited by Socket on Mar 25, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill’s purpose does match trading automation, but its footprint is high risk: mutable remote installation content, an unverified third-party plugin, credential forwarding to that plugin, and autonomous financial actions without per-trade approval. This is not confirmed malware, but it is unsafe to treat as benign.

Confidence: 90%Severity: 90%
Audit Metadata
Analyzed At
Mar 25, 2026, 04:48 AM
Package URL
pkg:socket/skills-sh/HKUDS%2FAI-Trader%2Fai-trader-copytrade%2F@34b05031a1385bcd30a3524817a54166845edc02