Back to skill

Security audit

Spawnxchange Direct Buying

Security checks across malware telemetry and agentic risk

Overview

This skill is a disclosed SpawnXchange purchase helper that can spend real USDC only when explicitly run in execute mode.

Install only if you are comfortable letting an agent assist with real USDC purchases. Use a dedicated low-balance wallet, keep the private key file and purchase records out of shared folders, logs, backups, and git, inspect the quote before using --execute, and review downloaded artifacts before integrating them.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
80% confidence
Finding
The script reads a raw hex private key directly from a plaintext file and then uses it to authorize blockchain payment. In an agent skill context, this is dangerous because it encourages insecure secret handling, increases the chance of key exposure via filesystem leakage, logs, backups, or misconfigured permissions, and grants direct spending authority if the key is compromised.

VirusTotal

50/50 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.