trading-strategy
Warn
Audited by Socket on Mar 14, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the core trading-analysis purpose is plausible, but the skill reaches into risky territory by fetching arbitrary external content, requesting user auth headers for paid sources, and enabling scheduled execution near real-world trading workflows. There is no clear malware payload or malicious exfiltration endpoint, but the credential handling and prompt-injection exposure are disproportionate enough to raise medium-high security concerns.
Confidence: 84%Severity: 68%
Audit Metadata