evm-defi-dex-swap

Warn

Audited by Snyk on Mar 28, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). The skill is explicitly designed to execute on-chain token swaps. It provides concrete, chain-specific router and token addresses, precise CLI commands using the cobo-agentic-wallet (caw) to encode calldata, submit transactions (approve and exactInputSingle swap), and check tx status. It requires an onboarded wallet and instructs how to approve tokens and send swap transactions — i.e., it signs and broadcasts value-moving blockchain transactions (crypto swaps). This is a direct crypto/blockchain financial execution capability.

Issues (1)

W009
MEDIUM

Direct money access capability detected (payment gateways, crypto, banking).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 28, 2026, 03:25 AM
Issues
1