Back to skill

Security audit

Orderly Sdk Page Components

Security checks for vulnerabilities and agentic risk

Overview

This is a documentation-only skill for adding Orderly SDK DEX page components, with disclosed crypto trading and asset-management features but no hidden execution behavior.

Before installing or using this skill, treat the generated DEX asset pages as capable of moving real funds once connected to wallets and providers. Confirm package provenance, wallet/network configuration, token amounts, destination addresses, fees, and transaction prompts carefully in the actual app.

Vulnerability Patterns
  • Skill Instruction HijackingAlters the agent's session goals or safety constraints when the skill loads
  • Agent Memory PoisoningWrites attacker-controlled rules into memory that affect later sessions
  • Remote Payload Retrieval and ExecutionFetches external code whose behavior can change after review
  • Embedded Malicious CodeShips malicious scripts inside the skill and executes them locally
  • Unauthorized Access and Privilege EscalationObtains permissions beyond the task's legitimate needs
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
90% confidence
Finding
This is a markdown file, so SQP-2 applies to omissions in user-facing safety disclosures. The skill advertises asset-management actions that can affect user funds, but it does not warn users about confirming transaction details, network selection, fees, or irreversible on-chain outcomes.

Static analysis

No suspicious patterns detected.