raydium

Warn

Audited by Socket on Apr 12, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The core Raydium quote/swap purpose is plausible, but the skill combines risky bootstrap behavior (curl|sh, direct binary download, transitive skill installation), unnecessary install telemetry with device fingerprinting, and autonomous financial action capability. The telemetry and expanded trust chain are disproportionate to a straightforward Raydium integration.

Confidence: 90%Severity: 84%
Audit Metadata
Analyzed At
Apr 12, 2026, 04:55 AM
Package URL
pkg:socket/skills-sh/okx%2Fplugin-store%2Fraydium%2F@fa5546ce1c15dbc87fecf4d2140ff1babfa426b2