web3-expert

Warn

Audited by Socket on Sep 11, 2026

1 alert found:

Anomaly
AnomalyLOW
references/EXAMPLES.md

No clear malicious behavior or supply-chain backdoor is present. The code is readable and consistent with Web3 examples, with no evident data exfiltration, credential theft, arbitrary code execution, or unauthorized persistence. It does contain material security and correctness risks: flawed reward-pool accounting, stake lock resetting, incomplete governance execution, AMM handling of small initial deposits and non-standard tokens, unchecked ERC-20 return values, and insufficient validation of dynamic frontend contract/IPFS inputs. These issues should be remediated before production deployment.

Confidence: 97%Severity: 68%
Audit Metadata
Analyzed At
Sep 11, 2026, 05:15 AM
Package URL
pkg:socket/skills-sh/personamanagmentlayer%2Fpcl%2Fweb3-expert%2F@12c0630af5f158206a1e4e9227060f230f8a709af8cd429689f9681fc8d71854
Security Audit — socket — web3-expert