spellcaster-cli
Warn
Audited by Snyk on Feb 26, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill is explicitly designed to operate a blockchain-focused CLI that performs balances, positions, swaps, bridge actions and other on-chain maintenance, and it includes handling of signer configuration, "Safe", signing modes, and RPC settings. Those capabilities (swaps/bridges, signing transactions, wallet/signer configuration) are specific crypto/blockchain financial execution features — i.e., the tool's primary purpose is to construct and run commands that can send transactions and move funds on-chain. This meets the "Direct Financial Execution" criteria.
Audit Metadata