leapcat-wallet
Warn
Audited by Socket on Mar 31, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
The skill is purpose-aligned for wallet management, but it grants an AI agent the ability to initiate cryptocurrency withdrawals after reauthentication. That financial autonomy makes it high risk even without clear signs of malware or exfiltration. The external CLI dependency is also insufficiently documented from a trust/provenance perspective.
Confidence: 81%Severity: 78%
Audit Metadata