okx-cex-earn

Warn

Audited by Snyk on May 13, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). The skill is explicitly designed to perform live financial operations on the OKX exchange via the okx CLI. It exposes authenticated WRITE commands that subscribe/purchase and redeem funds (e.g., earn savings purchase, earn savings fixed-purchase, earn dcd quote-and-buy, earn onchain purchase, earn onchain redeem, earn auto-earn on/off), includes atomic "quote + execute" purchase flows, and requires API-key/OAuth live profiles. The documentation also instructs using live mode silently and steps to verify post-execution order states. These are direct money-moving actions (send transaction/execute purchase/redeem), so this skill provides Direct Financial Execution capability.

Issues (1)

W009
MEDIUM

Direct money access capability detected (payment gateways, crypto, banking).

Audit Metadata
Risk Level
MEDIUM
Analyzed
May 13, 2026, 06:09 AM
Issues
1