cobra-strategy
Audited by Socket on Mar 12, 2026
1 alert found:
Obfuscated FileBenign to mildly suspicious overall. The COBRA skill presents a coherent triple-convergence trading framework with explicit risk controls and a formal High Water Mode DSL specification. There are no obvious credential, exfiltration, or supply-chain concerns based on the provided description. However, the autonomously executable trading logic implies that, if deployed with real broker access and automated order placement, it could cause real financial actions without continuous user approval. This warrants caution in environments where automated execution is allowed. Overall, the footprint aligns with a legitimate trading-systems tool, but with standard caution around autonomous trading capabilities.