evm-defi-dex-swap

Warn

Audited by Socket on Mar 29, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill is purpose-aligned for DEX swaps, but it authorizes and executes real blockchain trades and token approvals, making it inherently high impact. The main unresolved risk is trust in the external `caw` CLI and dependent wallet skill; without verified provenance and data-flow evidence for those components, this should not be treated as benign.

Confidence: 82%Severity: 78%
Audit Metadata
Analyzed At
Mar 29, 2026, 06:19 PM
Package URL
pkg:socket/skills-sh/openclaw-works%2Fcobo-agent-wallet-manual%2Fevm-defi-dex-swap%2F@e8f8f644f5dcf421d5854bde6313c1b0f85d1d79