nostr-marketplace-builder

Warn

Audited by Snyk on Mar 7, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). The skill is explicitly built for e-commerce and peer-to-peer bitcoin trading: it defines P2P buy/sell orders (NIP-69 kind:38383) with financial tags like amt/fa/pm, a status flow for trades, and a checkout flow that includes explicit payment options (ln invoices, btc address links, and payment URLs). Its primary and explicit purpose is creating and managing financial orders/payments on-chain/off-chain (market orders / crypto trades), so it qualifies as direct financial execution capability.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 7, 2026, 11:09 PM