algo-expert

Warn

Audited by Socket on May 7, 2026

1 alert found:

Anomaly
AnomalyLOW
rules/unified-strategy-pattern.md

No explicit malicious payload is visible in this fragment (no eval/exec, no subprocesses, no clear data-stealing/exfiltration logic). The dominant security concern is supply-chain/integrity risk from runtime sys.path manipulation that can redirect which core/* code is imported, combined with dotenv loading from the current working directory. Since the fragment omits key details and relies on external core modules, review those imports and the omitted sections to fully rule out tampering or hidden trading/telemetry behavior.

Confidence: 62%Severity: 56%
Audit Metadata
Analyzed At
May 7, 2026, 07:53 AM
Package URL
pkg:socket/skills-sh/marketcalls%2Fopenalgo-execution-skills%2Falgo-expert%2F@b4b40a5f36b733a73e9388a2749be5781721f28c