coinank-openapi
Warn
Audited by Snyk on May 14, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill explicitly implements a pay-per-call payment flow (x402) and integrates onchain payment tooling. It names and depends on okx-x402-payment and okx-agentic-wallet, prescribes signing schemes for EOA private keys and contract/OKX wallet sessions, and instructs the agent to perform signing, generate payment proof, add payment headers, and replay requests after payment. These are specific crypto/wallet payment operations (signing and submitting payments), not generic API or browser actions, so the skill grants direct financial execution capability.
Issues (1)
W009
MEDIUMDirect money access capability detected (payment gateways, crypto, banking).
Audit Metadata