python-binance

Warn

Audited by Socket on Apr 1, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill is coherent for a Binance SDK guide and does not show hidden exfiltration or malicious install behavior, but it enables real-money crypto trading and forwards API credentials to an unofficial third-party package. Main risk is autonomous financial action and credential exposure to non-official SDK code, not confirmed malware.

Confidence: 90%Severity: 68%
Audit Metadata
Analyzed At
Apr 1, 2026, 02:30 PM
Package URL
pkg:socket/skills-sh/sammchardy%2Fpython-binance%2Fpython-binance%2F@ba1249faf53ae7e24b17eae59c92cc1591ac1bd3