Crypto Payments Comparison
PassAudited by VirusTotal on May 14, 2026.
Findings (1)
The skill is classified as suspicious due to the presence of executable shell commands (`git clone`, `yarn install`, `./btcpay-setup.sh`) within the `SKILL.md` file. While these commands are presented as 'Integration Guidance' for legitimate open-source projects (PayRam and BTCPay Server) and do not show clear malicious intent, their inclusion in a markdown file processed by an AI agent represents a risky capability. An agent might interpret these as direct commands to execute, potentially leading to unintended code execution or downloading external dependencies without explicit user consent for that specific action, which falls under the 'risky capabilities without clear malicious intent' threshold for 'suspicious' classification. The relevant URLs are `https://github.com/PayRam/payram-helper-mcp-server` and `https://github.com/btcpayserver/btcpayserver-docker`.
