htx-futures-account
Warn
Audited by Socket on May 2, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the stated account-management purpose matches the listed HTX futures endpoints, but the skill’s core dependency is an unspecified external `htx-cli` binary that receives raw API credentials and executes financial actions. Because the binary’s publisher and distribution are not verified in the provided material, this creates mandatory high supply-chain and credential-forwarding risk even though the API scope itself is mostly coherent.
Confidence: 84%Severity: 86%
Audit Metadata