htx-spot-account
Warn
Audited by Socket on May 2, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the stated purpose matches the capabilities, but the skill's full trust is placed in an unspecified `htx-cli` binary that stores HTX credentials and can perform financial transfers. Because the executable's provenance and network behavior are not verifiable from the skill, the install/credential-forwarding risk is high even though the business purpose is coherent.
Confidence: 83%Severity: 84%
Audit Metadata