punishment
Warn
Audited by Snyk on Mar 1, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill is explicitly built around triggering and recording financial punishments (e.g., "Send $100 to friend/family", "Donate to charity", "Pay into savings") and the contract examples include a payment method field ("method": "venmo"), referee-confirmed payment statuses ("✅ Paid and confirmed by referee"), and UI flows that prompt the user to "Send the $100 now" and to confirm receipt. This is not a generic tool: its primary function is to transfer money as enforcement of contracts, and it names a specific payment method (Venmo) and payment confirmation flows. Therefore it contains direct financial execution capability.
Audit Metadata