stripe-integration

Warn

Audited by Snyk on Feb 15, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). The skill is explicitly and specifically designed for payment operations using Stripe (a payment gateway). It lists concrete payment capabilities and APIs such as stripe-payments, payment-intents, checkout-sessions, subscription-management, billing-portal, refunds/dunning handling, and stripe-connect (marketplace payouts). These are direct financial execution mechanisms (processing charges, managing subscriptions, refunds, and connected-account transfers), not generic tools, so it grants direct financial execution authority.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Feb 15, 2026, 08:19 PM