senpi-getting-started-guide

Warn

Audited by Socket on Mar 18, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is coherent with its stated purpose, but that purpose includes high-impact autonomous financial actions. No clear credential theft or malicious exfiltration is shown, and install sources are same-org/official-ish, but enabling an agent to create and close live trading strategies makes the overall security risk high.

Confidence: 88%Severity: 79%
Audit Metadata
Analyzed At
Mar 18, 2026, 10:36 PM
Package URL
pkg:socket/skills-sh/senpi-ai%2Fsenpi-skills%2Fsenpi-getting-started-guide%2F@7560269399baedee8888d65f8e6cbcbed86d5c6a