mainstream-spot-order

Warn

Audited by Socket on Apr 15, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill’s trading, backtesting, and OKX integration are broadly aligned with its purpose, and the `onchainos` installer appears same-org rather than obviously rogue. However, it still creates high security risk because it enables autonomous real-world cryptocurrency trading and routes trading authority through an external CLI binary. This is not confirmed malware, but it is a high-risk skill.

Confidence: 86%Severity: 81%
Audit Metadata
Analyzed At
Apr 15, 2026, 01:51 PM
Package URL
pkg:socket/skills-sh/okx%2Fplugin-store%2Fmainstream-spot-order%2F@c6055509c055ab92a689df423234cf288c48e2d4