Crypto Price By Lpdawn
Security checks across malware telemetry and agentic risk
Overview
This skill appears to only fetch public cryptocurrency prices from Binance as disclosed.
Reasonable to install for simple crypto price checks. Be aware it contacts Binance through ccxt, depends on whatever ccxt package is available in the environment unless separately pinned, and should not be treated as financial advice or granted wallet, exchange-account, or trading permissions without a separate review.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
66/66 vendors flagged this skill as clean.
