jlcpcb
Warn
Audited by Snyk on Mar 10, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill documents a JLCPCB Official API that explicitly supports placing orders: "PCB API — upload gerbers, get quotes, place orders, track status", plus "Stencil API — stencil quoting and ordering" and "3D Printing API — ... ordering". These are specific, purpose-built APIs for creating/paying for manufacturing orders (i.e., executing purchases), not generic HTTP or browser automation. Even though access is gated, the presence of APIs that can place orders constitutes direct financial execution capability.
Audit Metadata