tulebank
Fail
Audited by Socket on Mar 8, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
Overall, the skill footprint aligns with a legitimate financial workflow (off-ramp, swaps, beneficiary management) but introduces notable risk signals around credential handling, data exposure, and potential proxy-based data flows. The combination of API credentials routing, OTP flows, and automated transfer prompts without explicit, verifiable security controls elevates concern. Given the non-trivial financial impact and reliance on external proxies, the evaluation yields a SUSPICIOUS overall posture. Stronger validation of input handling, explicit secure credential management, verifiable proxy trust, and end-to-end auditability would be required to raise the trust level to Benign.
Confidence: 72%
Audit Metadata