cobo-agentic-wallet-dev
Warn
Audited by Socket on Apr 16, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS/HIGH-RISK skill. Its stated purpose matches crypto wallet operations, but it enables autonomous blockchain transactions, collects/uses credentials through an external `caw` CLI with no provenance shown here, and includes transitive skill updating. The main concern is not clear malicious intent but a high-risk combination of unverifiable executable trust, credential handling, and real-world financial actions.
Confidence: 87%Severity: 88%
Audit Metadata