uniswap-liquidity-planner

Warn

Audited by Socket on Apr 25, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the stated purpose is narrow and plausible, but the actual footprint adds a transitive skill-install/update chain controlled through OKX Plugin Store metadata rather than a clearly direct Uniswap release path. No direct credential theft is shown, but provenance is mixed and the auto-update/install behavior creates a high supply-chain trust risk for a simple planning skill.

Confidence: 91%Severity: 76%
Audit Metadata
Analyzed At
Apr 25, 2026, 08:27 AM
Package URL
pkg:socket/skills-sh/okx%2Fplugin-store%2Funiswap-liquidity-planner%2F@b298378488ae0d2947b9ee1427eb4dadcaf72b99