Polymarket Nordic Trader

Security checks across malware telemetry and agentic risk

Overview

This skill is openly for automated prediction-market trading, but live mode can place real trades using an API key without strong install-time permission declarations or documented risk limits.

Review this carefully before installing. Use dry-run first, provide only a least-privilege or sandbox trading key if available, set explicit position and loss limits outside the skill, and do not enable --live or cron execution until you understand what trades the API key can authorize.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • MCP Least PrivilegeUnderdeclared Capability, Wildcard Permission, Missing Permission Declaration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Lp3

Medium
Category
MCP Least Privilege
Confidence
82% confidence
Finding
The skill explicitly requires the `SIMMER_API_KEY` environment variable and describes live trading behavior, but the metadata shown does not declare corresponding permissions/capabilities. This creates a transparency and governance gap: an agent or platform user may not realize the skill consumes sensitive credentials and can access trading authority, increasing the chance of unsafe deployment or credential exposure.

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal