okx-growth-competition
Warn
Audited by Snyk on May 9, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill is explicitly for crypto trading competitions and includes atomic on-chain actions: it delegates trades to the okx-dex-swap (e.g. swap_swap / onchainos swap swap) and uses an atomic competition_claim tool that performs signing + broadcast and returns txHash. The docs state wallets/TEE sign transactions inside the tool, return tx hashes, and the CLI/MCP perform on-chain submissions. These are concrete crypto/blockchain transaction operations (wallet signing, broadcasting, swaps, claiming on-chain rewards), so the skill provides Direct Financial Execution Authority.
Issues (1)
W009
MEDIUMDirect money access capability detected (payment gateways, crypto, banking).
Audit Metadata