mantis-strategy

Warn

Audited by Socket on Apr 26, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill's stated purpose matches its capabilities, and the install source is broadly consistent with the Senpi publisher, so this is not obviously deceptive or credential-harvesting. However, it is a high-risk skill because it enables unattended, leveraged cryptocurrency trading with persistent state and direct execution authority, which creates significant real-world financial risk even without clear malware indicators.

Confidence: 89%Severity: 86%
Audit Metadata
Analyzed At
Apr 26, 2026, 05:45 AM
Package URL
pkg:socket/skills-sh/Senpi-ai%2Fsenpi-skills%2Fmantis-strategy%2F@b5befa6f098c5503e259bf59142a3ac4140913c8