pay-for-service
Warn
Audited by Socket on Apr 23, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: The skill is coherent with its stated purpose of paying x402 endpoints, but it combines runtime installation of an unpinned npm CLI, credential forwarding to that CLI, and real-money payment execution to arbitrary URLs. The footprint is proportionate yet high-risk, so this is not clearly malicious, but it should be treated as a sensitive financial/payment skill with meaningful supply-chain and credential-trust concerns.
Confidence: 83%Severity: 76%
Audit Metadata