stacks-alpha-engine

Warn

Audited by Socket on Apr 22, 2026

2 alerts found:

AnomalySecurity
AnomalyLOW
stacks-alpha-engine.ts

No strong indicators of intentional malware are present in the provided fragment: there is no eval/dynamic execution, no credential/secret handling, and no direct exfiltration logic. The primary concerns are operational/safety: numerous empty catch blocks may weaken or mask safety-gate reliability; cooldown enforcement depends on a local state file that can disable gating if corrupted; and emergency mode bypasses guardian checks. Given transaction-generation capabilities, this should be reviewed end-to-end with the unseen helper functions and the downstream instruction execution layer for correctness and trust of endpoint/constants, but malware probability from this fragment alone appears low.

Confidence: 66%Severity: 52%
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill is purpose-aligned for Stacks DeFi automation and shows no obvious malicious installer or credential-stealing pattern, but it grants an AI agent high-risk autonomous financial capabilities on mainnet and may route sensitive portfolio data through operator-run paid endpoints. This looks like a legitimate but high-risk trading/execution skill rather than confirmed malware.

Confidence: 84%Severity: 74%
Audit Metadata
Analyzed At
Apr 22, 2026, 03:06 PM
Package URL
pkg:socket/skills-sh/aibtcdev%2Fskills%2Fstacks-alpha-engine%2F@a8943dd2a674d4ad247f1880345155e2dd1704bb
Security Audit — socket — stacks-alpha-engine