orderly-onboarding
Warn
Audited by Socket on May 7, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: mostly coherent onboarding for Orderly's official ecosystem, but it expands the agent's trust boundary by instructing transitive skill installation through a third-party skills CLI and even suggests broad global agent installation. Official Orderly endpoints and package names align with purpose, so this is not confirmed malicious, but the transitive install chain and financial/trading context raise meaningful security risk.
Confidence: 88%Severity: 61%
Audit Metadata