Binance Event Contract Signal Calculator

Security checks across malware telemetry and agentic risk

Overview

The skill provides user-directed trading-plan suggestions using a disclosed market-data API key and does not execute trades, but its outputs could still influence risky financial decisions.

Install only if you are comfortable giving the skill a market-data API key and using it for speculative trading analysis. Treat position sizes, entries, stops, and targets as suggestions to independently verify, not as financial advice or instructions to trade.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
89% confidence
Finding
The skill generates highly specific trading signals, confidence scores, win-rate claims, and position-size recommendations without any visible risk disclosure or warning about potential financial loss. In this context, the omission is dangerous because users may over-trust the outputs as reliable financial advice, increasing the likelihood of reckless trading and material losses.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal