token-swap

Fail

Audited by Socket on Feb 28, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

This skill legitimately requires access to an active wallet and on-chain data to perform token swaps. Those capabilities are high-risk because they enable irreversible financial operations (swaps, approvals). The manifest documents reasonable security rules (explicit confirmations, honeypot checks, slippage limits), but the security of the overall system depends critically on: (1) enforcing non-bypassable interactive confirmations in the execution path, (2) using only trusted RPCs and audited external services for quotes and security checks, and (3) limiting approval behaviors (bounded allowances, user consent for large approvals). No explicit signs of malware or obfuscation are present in this high-level fragment, but because of the high-impact operations, treat implementations as security-sensitive and review actual code paths, RPC endpoints, and allowance mechanics before use.

Confidence: 98%
Audit Metadata
Analyzed At
Feb 28, 2026, 07:25 AM
Package URL
pkg:socket/skills-sh/TermiX-official%2Fcryptoclaw%2Ftoken-swap%2F@9db06852d966c04242860184aa8e8c764b4d0c69