switchboard
Audited by Socket on Feb 19, 2026
1 alert found:
Security[Skill Scanner] Download or install from free hosting/deployment platform detected This SKILL.md is a legitimate integration guide for the Switchboard oracle ecosystem. It documents interactions with Solana, Switchboard program IDs, Crossbar and Surge gateways, and reasonable configuration (wallets, optional API keys). I find no evidence of hidden malicious code, credential harvesting, obfuscation, or exfiltration in the provided document. The primary operational risk is the normal trust placed in the Switchboard gateways and any external HTTP data sources referenced by feed jobs; integrators should follow the documented defensive practices (multiple signatures, staleness checks) to reduce risk. LLM verification: This skill file is a documentation/integration guide for the Switchboard Oracle SDK and does not contain executable malicious code. The capabilities (wallet signing, RPC and Crossbar network access) match the stated purpose and are proportionate for an oracle SDK. Primary risks are supply-chain hygiene (unpinned npm dependencies) and trust in the external Crossbar endpoint — integrators should pin versions, verify program IDs, and ensure oracle responses are validated on-chain or by signature ch