agnic

Warn

Audited by Socket on Apr 4, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill’s broad wallet/payment/trading/email purpose matches its capabilities, but its trust model is high risk. It delegates powerful real-world actions to an unpinned third-party CLI (`npx agnic@latest`) and enables fund movement, paid calls, and outbound email, making compromise or misuse consequential even without clear evidence of malware.

Confidence: 82%Severity: 86%
Audit Metadata
Analyzed At
Apr 4, 2026, 03:49 AM
Package URL
pkg:socket/skills-sh/agnicpay%2Fagnic-wallet-skills%2Fagnic%2F@2e0c3751c2fa78b7c09f309a286a77174a14d699