gcp-resource-optimizer

Warn

Audited by Snyk on Mar 9, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). The skill is specifically and explicitly about cloud cost management and billing control for GCP. It includes concrete, non-generic billing operations such as "gcloud billing accounts describe ACCOUNT_ID" and an explicit command to create/update budgets: "gcloud billing budgets create --billing-account=BILLING_ACCOUNT_ID --display-name=... --budget-amount=100USD ...". It also gives instructions for credit burn rate planning (calculating required daily spend) and enabling billing export. These are targeted, provider-specific billing controls (budget creation/management) rather than generic tooling, so it grants direct financial execution authority over cloud billing settings.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 9, 2026, 10:10 PM