mantle

Warn

Audited by Socket on Sep 17, 2026

1 alert found:

Security
SecurityMEDIUM
skills/mantle-openclaw-competition/SKILL.md

SUSPICIOUS: the skill is purpose-aligned for Mantle DeFi operations, but it enables autonomous financial transactions and uses an installation path with some provenance ambiguity versus the project’s documented tooling. No clear credential theft or covert exfiltration is shown, so this is high-risk financial automation and supply-chain concern rather than confirmed malware.

Confidence: 83%Severity: 72%
Audit Metadata
Analyzed At
Sep 17, 2026, 04:30 AM
Package URL
pkg:socket/skills-sh/starchild-ai-agent%2Fofficial-skills%2Fmantle%2F@5054954d7005e51b3a4d854583b6297bf4f9c8fa8ccc92bae5e8933e464fc2d1
Security Audit — socket — mantle