liberfi-token
Warn
Audited by Socket on Apr 22, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill’s stated purpose and command scope are coherent for token research, and it does not request sensitive credentials. However, it instructs the agent to autonomously install and execute a global third-party CLI, and the official provenance of that CLI could not be independently verified from LiberFi documentation. This is primarily a medium supply-chain and execution-trust risk, not confirmed malware.
Confidence: 80%Severity: 52%
Audit Metadata