qmt-docs

Warn

Audited by Socket on May 15, 2026

1 alert found:

Anomaly
AnomalyLOW
references/python-innerApi/code_examples.md

No clear evidence of intentional malware (no obfuscation, no dynamic execution, no suspicious external networking, no credential theft) is present in the provided fragment. The dominant security concern is operational impact: multiple examples demonstrate automated order placement/cancellation and persisted extension-data writes, while extensive print/logging can leak market and trading/account data to logs. Overall, the module appears to be trading-platform example code, but due to high-impact sinks (passorder/algo_passorder/cancel and set_extend_data_value), it warrants careful review and safe-guarding when used or adapted in any automated pipeline.

Confidence: 58%Severity: 57%
Audit Metadata
Analyzed At
May 15, 2026, 02:56 AM
Package URL
pkg:socket/skills-sh/lzwme%2Ffinance-quant-skills%2Fqmt-docs%2F@099c18da44464dd63b214cefee0519c4bcd58a6b