okx-cex-portfolio
Warn
Audited by Snyk on May 13, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill is explicitly designed to manage an OKX exchange account and includes authenticated write operations that move funds: notably the
okx account transfercommand (with example "Transfer 200 USDT from funding to trading"), the MCP toolaccount_transfer, and workflow steps that perform transfers after user approval. It requires API credentials and provides direct CLI/API calls to transfer currency between accounts (i.e., sending transactions). These are specific crypto exchange fund-movement capabilities (not generic tooling), so it grants direct financial execution authority.
Issues (1)
W009
MEDIUMDirect money access capability detected (payment gateways, crypto, banking).
Audit Metadata