zerion-sign
Warn
Audited by Snyk on May 13, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill is explicitly a crypto signing tool: it provides off-chain signing of messages and EIP-712 typed data and specifically calls out EIP-2612 permits, Permit2 approvals, and Seaport/OpenSea off-chain orders. Those signatures can grant token allowances or approve orders (i.e., directly enable financial actions). This is a specialized blockchain signing capability (not a generic API/browser tool) and thus meets the "Crypto/Blockchain (Wallets, ... Signing)" criterion for direct financial execution authority.
Issues (1)
W009
MEDIUMDirect money access capability detected (payment gateways, crypto, banking).
Audit Metadata