billing-setup
Warn
Audited by Snyk on May 7, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill is explicitly and primarily built to configure billing and pricing, create currencies/assets, manage products and product versions, set prices, run simulations, and run end-to-end billing-cycle verification in Credyt via MCP. It references specific mutation calls (credyt:create_asset, credyt:create_product, credyt:create_product_version, credyt:add_asset_rate, credyt:quote_asset, credyt:simulate_usage, credyt:create_vendor, etc.) that create or modify monetary instruments, pricing, and entitlements — i.e., operations that directly set up and execute financial charges and asset definitions. This is not a generic API caller or a browser automation tool; it is specifically designed for financial operations (billing, pricing, currency creation and exchange rates, simulation of charges), so it meets the "Direct Financial Execution" criteria.
Issues (1)
W009
MEDIUMDirect money access capability detected (payment gateways, crypto, banking).
Audit Metadata