Sato Check · Package
0xdegenmo-lighter-mcp
pypi:0xdegenmo-lighter-mcp · v0.1.1 · sha256:298d030c4e7c · as of 2026-09-29
- Does it take your key? traced
- Yes — it reads private-key material. Local signing is what a wallet does; question 2 says whether the key leaves.
- Our static read of the published artifact found it.
- Does your key leave? no evidence
- Not yet run — we have not run this version with planted test keys.
- No evidence line on file for this question yet.
- Can it move funds on its own? no evidence
- Unknown — we could not read what it exposes.
- No evidence line on file for this question yet.
- What changed? no evidence
- First profile of this subject — nothing to compare yet.
- No evidence line on file for this question yet.
Is this your project? Respond →Dispute this reading
Hosts contacted
| Host | When | Role | Evidence |
|---|---|---|---|
| mainnet.zklighter.elliot.ai | code | rpc | traced |
Evidence (8 lines)
- tracedT-key-read2026-09-29
Reads os.environ LIGHTER_PRIVATE_KEY.
src/lighter_mcp/server.py:61
- tracedT-key-read2026-09-29
Reads os.environ L1_PRIVATE_KEY.
scripts/approve_integrator.py:128
- tracedT-key-read2026-09-29
Reads os.environ LIGHTER_PRIVATE_KEY.
scripts/approve_integrator.py:145
- tracedT-key-read2026-09-29
Reads os.environ LIGHTER_PRIVATE_KEY.
src/lighter_mcp/approve_cli.py:470
- tracedT-key-read2026-09-29
Reads os.environ LIGHTER_PRIVATE_KEY.
src/lighter_mcp/approve_cli.py:601
- tracedT-key-read2026-09-29
Reads os.environ LIGHTER_PRIVATE_KEY.
src/lighter_mcp/exchange.py:132
- tracedT-hosts2026-09-29
mainnet.zklighter.elliot.ai appears in shipped code (rpc).
scripts/approve_integrator.py
- declaredD-env-key2026-09-29
Setup names LIGHTER_PRIVATE_KEY as something to provide.
deploy_spec.requires
Limits
- The observed lane has not run on this version: not yet run on this version
- Traced analysis follows flows inside one module only; a key handed from one module to another is not followed.
- The observed lane has not run on this version.
- No tool inventory was available, so fund actions were not read.
- Traced: Python read line by line, not parsed.
A profile describes what we read and ran, with dates. It is not a safety rating, an audit or an endorsement, and "not found" is not "not there".
sato.custody/v1 · custody-1
Maintain this project? Respond to this reading
Loading sign-in…