nunchuk-platform-key
Warn
Audited by Snyk on May 10, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill is explicitly for managing a platform signing key for multisig wallets: enabling/disabling the key, setting per-key and global policies, configuring auto-broadcast (which broadcasts transactions after signing), signing delays, and spending limits. These are concrete crypto wallet controls that can authorize and broadcast transactions (i.e., move funds) and adjust automatic approval limits. This is a specific financial execution capability (crypto signing/broadcasting and spending-limit management), not a generic tool.
Issues (1)
W009
MEDIUMDirect money access capability detected (payment gateways, crypto, banking).
Audit Metadata