T08 · Insecure Dependencies
- Location
clawhub.json:3- Finding
Unpinned Third-Party Trading SDK Creates a Supply-Chain Risk
- Content
View full analysis
- Remediation
View remediation
Security audit
Security checks for vulnerabilities and agentic risk
This skill is openly a copy-trading tool, but its live-trading safeguards can fail open and its sensitive trading dependency is not pinned.
Review this before installing if you may ever run it with --live. Keep paper mode unless you understand the trading risk, use a tightly scoped SIMMER_API_KEY with server-side spending and position limits, and prefer a version that pins simmer-sdk and fails closed when portfolio state cannot be verified.
clawhub.json:3Unpinned Third-Party Trading SDK Creates a Supply-Chain Risk
trader.py:371Live-Trading Position-Limit Safeguard Fails Open on Portfolio Lookup Errors
The skill describes behavior that inherently requires network access and use of environment-provided secrets (SIMMER_API_KEY), but it does not declare any explicit tool scope such as permissions or allowed-tools. That creates an authorization gap: an agent runtime may grant broader-than-intended access, making it easier for the skill to reach arbitrary external services or access sensitive environment data beyond what is necessary for leaderboard and trading API interactions.
No suspicious patterns detected.