balance

Warn

Audited by Socket on Mar 19, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The stated purpose is coherent for a wallet balance skill, and its capabilities are mostly proportionate, but it relies on executing an unpinned external CLI via `npx ...@latest` in a financial context. With no verification here that fibx is the official, trusted distribution path, the main concern is supply-chain risk rather than confirmed malware.

Confidence: 82%Severity: 68%
Audit Metadata
Analyzed At
Mar 19, 2026, 04:25 PM
Package URL
pkg:socket/skills-sh/Fibrous-Finance%2Ffibx-skills%2Fbalance%2F@774472064f7eea5696b77123645fe3719bdd4a12