gate-exchange-trading-copilot

Warn

Audited by Socket on Apr 2, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is coherent with its stated Gate trading purpose and mostly routes data to expected Gate MCP/Gate endpoints, but it is inherently high risk because it empowers an AI agent to perform real financial trades and borrow/repay actions. Mandatory Y-confirmation lowers misuse risk, yet the remote runtime rules and transitive installer-skill chain add trust concerns.

Confidence: 85%Severity: 73%
Audit Metadata
Analyzed At
Apr 2, 2026, 12:25 AM
Package URL
pkg:socket/skills-sh/gate%2Fgate-skills%2Fgate-exchange-trading-copilot%2F@7e3f04ee9cc90230eb8d46a8aa029d0cc13c7358