okx-defi-invest

Warn

Audited by Socket on May 11, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

Purpose and capabilities are broadly aligned for a DeFi execution skill, and the publisher/source relationship is substantially verifiable as OKX. The main concerns are high-risk financial autonomy and medium supply-chain risk from third-party Skills CLI installation plus mutable remote shell installers. This looks vulnerable/high-risk rather than malicious.

Confidence: 84%Severity: 72%
Audit Metadata
Analyzed At
May 11, 2026, 07:16 PM
Package URL
pkg:socket/skills-sh/okx%2Fonchainos-skills%2Fokx-defi-invest%2F@4f32a049f7e21cee118c4204517e21b9ad498f48