Kraken Agent

Security checks across malware telemetry and agentic risk

Overview

This is a documentation-only Kraken CLI guide with disclosed trading and credential considerations, and no bundled code or hidden execution behavior.

Install this only if you intend to use Kraken CLI. Start with market data or paper trading, keep MCP scope limited to market,paper unless you explicitly need account or live trading tools, and use least-privilege Kraken API keys if you enable authenticated trading.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
90% confidence
Finding
The trigger phrases include several broad terms such as "market data," "paper trading," and "trade bitcoin" that can plausibly appear in general finance or crypto conversations, causing the skill to activate when the user did not explicitly intend to use Kraken CLI. Because this skill is tied to trading workflows and can expose market/account capabilities via MCP, unintended activation increases the chance of inappropriate tool suggestion or escalation into sensitive financial actions.

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal