bridge-stablecoin
Warn
Audited by Snyk on Mar 12, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill is explicitly a crypto payment/transfer SDK for moving USDC across chains. It documents direct functions to execute transfers (kit.bridge(), kit.retry()), wallet adapters that require private keys or Circle Wallet credentials, and the full CCTP lifecycle (approve, burn, fetchAttestation, mint). It also mentions forwarding service fees and per-transfer configuration. This is a purpose-built financial execution tool (crypto/bridging/wallet signing), not a generic API or browser automation, so it grants Direct Financial Execution Authority.
Issues (1)
W009
MEDIUMDirect money access capability detected (payment gateways, crypto, banking).
Audit Metadata