orderly-websocket-streaming

Pass

Audited by Gen Agent Trust Hub on Sep 25, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill references the cryptographic library @noble/ed25519 and vendor-specific Node.js packages @orderly.network/hooks and @orderly.network/types. These are standard dependencies used to implement the WebSocket streaming and authentication logic described in the documentation.
  • [CREDENTIALS_UNSAFE]: The documentation and code samples explain the requirement for an account ID and an Ed25519 private key to authenticate private streams. All examples use generic placeholders such as your_account_id and do not contain any hardcoded secrets or sensitive credentials.
  • [INDIRECT_PROMPT_INJECTION]: The skill establishes a data ingestion surface by connecting to real-time WebSocket streams for orderbooks, positions, and balances. This data originates from an external network; however, the provided examples demonstrate using this data for UI updates and application logic rather than interpolating it into agent instructions or executable commands.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 25, 2026, 01:22 PM
Security Audit — agent-trust-hub — orderly-websocket-streaming