qrcoin
Audited by Socket on Mar 1, 2026
1 alert found:
MalwareThis document is an informational skill describing how to query QR Coin auction state and how to construct/submit USDC transactions (approve, createBid, contributeToBid) on Base. It is consistent with its stated purpose and contains no obvious obfuscated or embedded malicious code. The primary security risks are: (1) financial risk from users executing irreversible transactions if they copy/paste prompts or grant signing authority to a third-party service (Bankr) without verifying trust; (2) RPC/trusted-provider risks if users substitute untrusted endpoints. No direct credential-harvesting or network exfiltration is present in the provided content. Reviewers should ensure users understand the risks of delegating signing to third parties and of granting token allowances.