Polymarket Mert Sniper
PassAudited by VirusTotal on May 12, 2026.
Findings (1)
The skill bundle facilitates automated trading on Polymarket but requires the user to provide a highly sensitive `WALLET_PRIVATE_KEY`, which `SKILL.md` explicitly instructs the AI agent to solicit and store in environment variables. While the logic in `mert_sniper.py` and `scripts/status.py` appears aligned with the stated purpose of market sniping, the handling of raw private keys and the reliance on an external dependency (`simmer-sdk`) for transaction signing represents a high-risk security pattern. No explicit evidence of data exfiltration or intentional malice was found in the provided code, but the credential solicitation via prompt instructions warrants a suspicious classification.
