orderly-websocket-streaming
Pass
Audited by Gen Agent Trust Hub on Sep 25, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill references the cryptographic library
@noble/ed25519and vendor-specific Node.js packages@orderly.network/hooksand@orderly.network/types. These are standard dependencies used to implement the WebSocket streaming and authentication logic described in the documentation. - [CREDENTIALS_UNSAFE]: The documentation and code samples explain the requirement for an account ID and an Ed25519 private key to authenticate private streams. All examples use generic placeholders such as
your_account_idand do not contain any hardcoded secrets or sensitive credentials. - [INDIRECT_PROMPT_INJECTION]: The skill establishes a data ingestion surface by connecting to real-time WebSocket streams for orderbooks, positions, and balances. This data originates from an external network; however, the provided examples demonstrate using this data for UI updates and application logic rather than interpolating it into agent instructions or executable commands.
Audit Metadata