gmx-v2
Audited by Socket on Apr 9, 2026
2 alerts found:
SecurityObfuscated FileSUSPICIOUS. The stated purpose matches GMX trading, but the footprint is disproportionate: it installs an unverifiable third-party binary, chains in additional skills, and sends install telemetry with device fingerprinting to external services. Because the binary can perform real on-chain financial actions and may receive wallet-related inputs, this is high security risk even without proof of outright malware.
The fragment is a descriptive overview of a GMX V2 plugin's capabilities rather than an implementation. There is no evidence of malicious code or backdoors in this text. Operational security relies on secure wallet management, trusted plugin delivery, and integrity of dry-run previews before signing. Overall, the immediate risk from this fragment is low, but the real risk hinges on the security of the actual implementation and deployment context.