identity

Warn

Audited by Snyk on Mar 10, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). The skill exposes on-chain transaction operations that require an unlocked wallet and submit signed transactions (returns txids). It supports setting/unsetting agent wallets, registering identities with optional fees (micro-STX), transferring ERC-8004 identity NFTs to other addresses, and approving operators — all explicit crypto/blockchain wallet and transaction actions (signing/sending transactions and transferring token ownership). These are direct blockchain/crypto execution capabilities (wallet signing and asset transfer), so it constitutes direct financial execution authority.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 10, 2026, 11:12 PM