Back to skill

Security audit

skillet

Security checks across malware telemetry and agentic risk

Overview

This skill is openly a PancakeSwap crypto-trading assistant, but it gives an agent ongoing access to funded wallet assets without clear transaction limits or approval controls.

Install only if you are prepared to treat this as a financial-transaction tool. Use testnet first, fund only a dedicated low-value wallet, protect or encrypt wallet.json, review every command before running it, and require explicit approval for each mainnet trade.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
97% confidence
Finding
The skill explicitly instructs creation of a wallet file containing an unencrypted private key and public metadata in a predictable location, which materially increases the chance of key theft from local compromise, backups, logs, or accidental disclosure. In this context the danger is elevated because the same skill is designed to receive funds and execute on-chain swaps, so compromise of the file directly enables theft of user-funded assets.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal