identity

Warn

Audited by Snyk on Mar 17, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). The skill exposes on-chain transaction operations that require an unlocked wallet and submit signed transactions (returns txids). It supports setting/unsetting agent wallets, registering identities with optional fees (micro-STX), transferring ERC-8004 identity NFTs to other addresses, and approving operators — all explicit crypto/blockchain wallet and transaction actions (signing/sending transactions and transferring token ownership). These are direct blockchain/crypto execution capabilities (wallet signing and asset transfer), so it constitutes direct financial execution authority.

Issues (1)

W009
MEDIUM

Direct money access capability detected (payment gateways, crypto, banking).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 17, 2026, 12:23 PM
Issues
1