bnbagent
Warn
Audited by Socket on Jul 19, 2026
1 alert found:
AnomalyAnomalyexamples/a2a-agent/README.md
LOWAnomalyLOW
examples/a2a-agent/README.md
This code description outlines a legitimate open-source pattern for an A2A agent with on-chain signing and discovery flows. Security risk is moderate-to-high due to secret management (private keys in env), potential for on-chain funding flows, and reliance on input validation for cryptographic operations. No clear malware is evident, but the design requires rigorous key handling, strict input validation, and secure logging/telemetry to mitigate supply-chain and on-chain tampering risks.
Confidence: 44%Severity: 62%
Audit Metadata