record-trade

Warn

Audited by Snyk on Mar 3, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). The skill is a specialized trading ledger API/CLI explicitly designed for financial operations: it accepts trade records (buy/sell, spot/futures with qty, price, fees, leverage), automatically adjusts account balances when trades are ingested, and exposes a PUT /accounts/{accountId}/balance endpoint that can overwrite an account's cash balance. These are specific finance-focused endpoints for recording trades and manipulating ledger balances (not generic browser or HTTP tooling), so it grants direct financial execution/authority within the ledger.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 3, 2026, 08:31 PM