pillar

Warn

Audited by Socket on Mar 18, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill is purpose-aligned for a crypto wallet, but it gives an AI agent autonomous mainnet financial powers, stores local signing keys, and sends signed operations to an insufficiently documented backend. This is high security risk from scope and real-world action potential, not confirmed malware.

Confidence: 81%Severity: 82%
Audit Metadata
Analyzed At
Mar 18, 2026, 11:22 PM
Package URL
pkg:socket/skills-sh/aibtcdev%2Fskills%2Fpillar%2F@44e571f54997a71ed6d0e3ae7a34d482e66f416a
Security Audit — socket — pillar