T08 · Insecure Dependencies
- Location
SKILL.md:8- Finding
Unpinned Executable Third-Party Dependency
- Content
View full analysis
- Remediation
View remediation
Security audit
Security checks for vulnerabilities and agentic risk
The skill is a coherent trading automation, but it needs review because live mode can place trades with weak input limits and an unpinned trading SDK dependency.
Review before installing. Use a dedicated low-privilege Simmer API key with spending or transaction limits, keep the default dry-run until behavior is verified, pin and review the `simmer-sdk` dependency, and avoid live mode until probability and trade-amount validation are hardened.
SKILL.md:8Unpinned Executable Third-Party Dependency
edge_liquidity.py:24Malformed Probability Values Can Bypass Trade Validation
The skill declares use of environment variables, including a required API key, but does not define an explicit tool/permission scope such as 'permissions' or 'allowed-tools'. This creates an avoidable trust gap: the runtime may grant broader access than readers or policy tooling can verify, increasing the risk of unintended secret exposure or capability creep if the skill is modified or interpreted permissively.
The code reads SIMMER_API_KEY from the environment to authenticate trading actions, but there is no nearby comment, docstring, or user-facing message disclosing that the skill uses sensitive credentials. For code files, accessing sensitive environment variables should have some visible disclosure unless clearly documented elsewhere in the skill materials.
No suspicious patterns detected.