Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 70% confidence
- Finding
- Without declared permissions the skill's intent is opaque and cannot be validated.
Security audit
Security checks across malware telemetry and agentic risk
This skill only fetches public DeFiLlama yield data and prints filtered results, with no wallet, credential, or fund-moving behavior.
Installers should treat results as a shortlist, not financial advice: the skill is read-only, but APY data can be stale or incentive-driven, so verify pool contracts, audits, and reward composition before depositing funds.
65/65 vendors flagged this skill as clean.
No suspicious patterns detected.