Uniswap Deploy Agent Token
Security checks across malware telemetry and agentic risk
Overview
The skill is transparent about deploying Uniswap token pools, but it delegates irreversible crypto transactions without clearly defining user approval and wallet-signing boundaries.
Review before installing. Use only with a wallet that requires manual signing, verify every contract address, hook, approval, amount, slippage setting, recipient, and LP lock duration before any transaction, and do not grant unattended authority over funds.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
66/66 vendors flagged this skill as clean.
