Raydium

Security checks across malware telemetry and agentic risk

Overview

This is an instruction-only Raydium liquidity risk helper with no code execution, wallet access, or credential handling.

Reasonable to install as an analytical helper. Use it with current pool data and independent verification before deploying capital; do not treat its output as financial advice or a guarantee of pool safety.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
88% confidence
Finding
This manifest file defines activation triggers, so SQP-1 applies. Phrases like "should I add liquidity", "pool depth", and "liquidity audit" are relatively broad and lack clear scope constraints or exclusion conditions, which could cause unintended invocation outside the intended Raydium-specific context.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal