autonomous-trading

Fail

Audited by Socket on Mar 6, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The skill describes a sophisticated autonomous trading system with structured risk controls and cron-based orchestration. Its footprint is broadly coherent with the stated purpose, and there are no explicit malicious network exfiltration or random download patterns. However, several risk signals are present: potential credential handling for wallets/exchanges is implied but not demonstrated, autonomous trade execution may proceed without per-action user confirmation, and dependencies come from external components whose provenance is not verified in the fragment. Overall, the risk isMedium (suspicious-enough to warrant careful review before deployment); the footprint is not inherently malicious but warrants credential-management discipline, explicit user consent for autonomous trades, and verification of all third-party dependencies and their sources.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 6, 2026, 11:59 PM
Package URL
pkg:socket/skills-sh/senpi-ai%2Fsenpi-skills%2Fautonomous-trading%2F@3e0c619c394713bc3aa0be586d5e1446bfa8f273