okx-cex-market
Pass
Audited by Gen Agent Trust Hub on May 13, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill installs the
@okx_ai/okx-trade-clipackage from the NPM registry. This is a vendor-supplied scoped package used to interact with the OKX API. - [COMMAND_EXECUTION]: The skill executes shell commands using the installed
okxCLI to fetch market data. These operations are limited to read-only retrieval of public information. - [PROMPT_INJECTION]: The skill ingests data from external OKX API endpoints. 1. Ingestion points: API responses from market data commands (ticker, trades, candles, indicators). 2. Boundary markers: Absent. 3. Capability inventory: Execution of
okxCLI commands via the shell. 4. Sanitization: None. While this creates a surface for indirect prompt injection, the data is primarily structured and numeric, making the risk of adversarial exploitation negligible.
Audit Metadata