jaw-sdk-best-practices

Fail

Audited by Socket on Feb 26, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

The provided fragment is a coherent best-practices documentation piece for the JAW SDK ecosystem. There is no evidence of malicious behavior, secret leakage, or dangerous data exfiltration within the fragment itself. The primary security considerations arise from how API keys and configuration are supplied and managed in downstream implementations (not shown here). Overall, the fragment is BENIGN with respect to code-level security risks, but it warrants standard best-practice emphasis on protecting API keys and minimizing over-privilege in deployment, especially for headless/server-side and AI-agent wallet workflows.

Confidence: 95%Severity: 90%
Audit Metadata
Analyzed At
Feb 26, 2026, 05:45 PM
Package URL
pkg:socket/skills-sh/justaname-id%2Fjaw-skills%2Fjaw-sdk-best-practices%2F@ad05a49f5b0d4a3ef1fe534ba07a4cb10627640a