okx-cex-portfolio
Audited by Socket on Mar 11, 2026
1 alert found:
Obfuscated FileThe skill is conceptually coherent: it serves as a portfolio/account management CLI for OKX, with clearly defined read/write commands, credential handling, and profile isolation. Data flows are constrained to OKX API endpoints and local credential stores, aligning with the stated purpose. There are no evident malicious data-exfiltration patterns, unverifiable binaries, or deceptive behaviors. The footprint is proportionate to its described tasks, and credential handling is appropriately emphasized. Overall assessment: BENIGN with MEDIUM-LOW security risk due to handling of API keys and potential logging exposure; no immediate red flags for supply-chain or data leakage beyond standard operational risks.