air-agentic-wallet
Warn
Audited by Socket on Mar 25, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill is purpose-aligned for agentic wallet control, but it enables autonomous financial/onchain actions and sends signing material to a runtime-provided AIR endpoint that is not pinned to a clearly verified official domain. No malware or installer abuse is evident, but the combination of high-impact actions and endpoint trust ambiguity makes the overall security risk high.
Confidence: 86%Severity: 78%
Audit Metadata