Back to skill

Security audit

LLM Wallet - x402 stabelcoin payments on Polygon

Security checks across malware telemetry and agentic risk

Overview

This skill gives an agent crypto wallet and micropayment abilities, but the reviewed artifacts disclose that purpose and include consent, limit, logging, encryption, and testnet-default safety guidance.

Install only if you intentionally want an agent to manage a wallet and make payments. Start on testnet, set low per-transaction and daily limits, review the exact URL, amount, network, and recipient before approving any payment, and avoid using production private keys or exposing them in chat, logs, or shell history.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
92% confidence
Finding
The mainnet example explicitly switches to Polygon mainnet and then shows a real-money payment flow without an approval step, despite the rest of the document emphasizing user consent before paid API access. In an agent skill that can move funds, omission of approval in a copy-pastable example materially increases the risk of unauthorized or accidental spending.

VirusTotal

63/63 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.