polymarket-copytrading

Warn

Audited by Socket on Mar 15, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The skill is purpose-aligned and routes data to a plausible first-party Simmer API, so it does not look malicious. However, it is a high-risk trading skill because it can autonomously execute real-money buys and sells and may use a raw wallet private key for signing. Overall classification: SUSPICIOUS due to high-impact financial automation, not credential theft or hidden exfiltration.

Confidence: 84%Severity: 72%
Audit Metadata
Analyzed At
Mar 15, 2026, 06:42 PM
Package URL
pkg:socket/skills-sh/spartanlabsxyz%2Fsimmer-sdk%2Fpolymarket-copytrading%2F@1151650309668ae4dc563608a1ee09a866fb20e3