BTC/ETH AI Trader

Security checks across malware telemetry and agentic risk

Overview

This is a disclosed BTC/ETH analysis and notification skill, with expected network calls and messaging credentials but no hidden trading, exfiltration, persistence, or destructive behavior found.

Install only if you are comfortable with the skill contacting market-data APIs and sending generated reports to the messaging channels you configure. Keep config.json private, use dedicated low-privilege bots or webhooks, and add the cron schedule only if you intentionally want recurring automated reports.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • MCP Least PrivilegeUnderdeclared Capability, Wildcard Permission, Missing Permission Declaration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Lp3

Medium
Category
MCP Least Privilege
Confidence
94% confidence
Finding
The skill advertises and invokes network-capable functionality such as fetching market data from CoinEx and pushing messages to Telegram, Discord, Feishu, and WeCom, but the manifest does not declare corresponding permissions. This creates a transparency and governance gap: users and platform policy engines cannot accurately assess or constrain outbound connectivity, which can enable unexpected data exfiltration, external command/control, or unauthorized messaging behavior.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal