billing-setup

Warn

Audited by Snyk on Mar 28, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). The skill is explicitly a billing configuration tool for "Credyt" and defines specific financial APIs and mutations: credyt:create_asset, credyt:add_asset_rate, credyt:quote_asset, credyt:create_product, credyt:create_product_version, credyt:simulate_usage, credyt:create_vendor, plus running a full billing-cycle verification that deducts credits and validates prices. These are not generic utilities — they are explicitly for creating currencies/assets, setting prices, creating/updating products and entitlements, simulating and executing billing events (i.e., charging/deducting), and verifying end-to-end billing. That meets the definition of Direct Financial Execution (a tool whose primary and explicit purpose is to move/manage money and billing).

Issues (1)

W009
MEDIUM

Direct money access capability detected (payment gateways, crypto, banking).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 28, 2026, 08:39 AM
Issues
1