orderly

Warn

Audited by Socket on Mar 13, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The core trading functionality matches the stated purpose and official Orderly capabilities, but the skill is high risk because it enables autonomous financial actions, depends on an unverified wallet service endpoint for signing, and tells the agent to load another skill and grant a wildcard wallet policy. This is not confirmed malware, but it is a dangerous skill footprint for an AI agent.

Confidence: 89%Severity: 81%
Audit Metadata
Analyzed At
Mar 13, 2026, 06:30 PM
Package URL
pkg:socket/skills-sh/Starchild-ai-agent%2Fofficial-skills%2Forderly%2F@bf119cf044ea1dbfba508a05ba563813043c98aa