Shell command execution detected (child_process).
Critical
- Code
- suspicious.dangerous_exec
- Location
- dist/index.js:430
- Evidence
const stdout = execFileSync(
Security audit
Security checks across malware telemetry and agentic risk
The skill is purpose-aligned for wallet operations, but it needs Review because it can move real funds and enable broad autonomous wallet permissions.
Install only if you intend to give the agent wallet authority over real mainnet funds. Review the external AgentLayer wallet runtime before use, keep autonomous approval disabled unless you deliberately need it, revoke it after use, and preview x402 payments manually before letting the agent pay arbitrary endpoints.
61/61 vendors flagged this plugin as clean.
Detected: suspicious.dangerous_exec
const stdout = execFileSync(
const stdout = execFileSync(