orderly-sdk-wallet-connection

Pass

Audited by Gen Agent Trust Hub on Sep 25, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill provides instructions to install standard Web3 and Orderly Network packages via npm. These include official SDK components from @orderly.network and well-known industry libraries like wagmi, @web3-onboard, and @solana/wallet-adapter. These downloads are appropriate for the skill's primary purpose of setting up a decentralized exchange interface.
  • [CREDENTIALS_SAFE]: The skill explicitly advises users to source sensitive identifiers, such as the WalletConnect Project ID, from environment variables or configuration files rather than hardcoding them into the source code, which aligns with security best practices.
  • [COMMAND_EXECUTION]: The skill includes shell commands for package installation (npm install). These commands are static, target specific reputable packages, and do not involve dynamic execution or piping from remote sources.
  • [DATA_EXPOSURE]: The skill uses localStorage to persist non-sensitive user preferences (the selected network ID) across sessions. This is a standard practice for managing UI state in web applications and does not involve the storage or transmission of sensitive user data.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 25, 2026, 01:22 PM
Security Audit — agent-trust-hub — orderly-sdk-wallet-connection