spellcaster-cli

Warn

Audited by Snyk on Feb 26, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). The skill is explicitly designed to operate a blockchain-focused CLI that performs balances, positions, swaps, bridge actions and other on-chain maintenance, and it includes handling of signer configuration, "Safe", signing modes, and RPC settings. Those capabilities (swaps/bridges, signing transactions, wallet/signer configuration) are specific crypto/blockchain financial execution features — i.e., the tool's primary purpose is to construct and run commands that can send transactions and move funds on-chain. This meets the "Direct Financial Execution" criteria.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Feb 26, 2026, 04:38 PM