setup
Warn
Audited by Snyk on Mar 23, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill explicitly provisions and manipulates billing/payment entities and performs financial transactions. It uses specific Credyt/MCP actions such as credyt:create_asset, credyt:create_product, credyt:create_customer, credyt:create_adjustment (to add funds), credyt:submit_events (to generate billable events/fees), and wallet checks (credyt:get_wallet) to verify balance changes. These are concrete payment/billing APIs designed to create products, fund wallets, and trigger/verify charges — i.e., they move or manage money. Therefore it meets the definition of Direct Financial Execution.
Issues (1)
W009
MEDIUMDirect money access capability detected (payment gateways, crypto, banking).
Audit Metadata