gate-exchange-futures

Warn

Audited by Socket on Apr 26, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally aligned with a Gate futures trading purpose and uses same-org distribution, so it does not look like disguised credential theft. However, it grants an AI agent high-impact autonomous financial trading capability and forwards exchange credentials to an external CLI binary, making the overall security risk high despite limited evidence of malware.

Confidence: 88%Severity: 82%
Audit Metadata
Analyzed At
Apr 26, 2026, 03:54 PM
Package URL
pkg:socket/skills-sh/gate%2Fgate-skills%2Fgate-exchange-futures%2F@4ebee654e8c1a3af1a1a380c263830df363a1dd3