rails-service-object
Warn
Audited by Snyk on Feb 13, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill includes explicit, domain-specific payment functionality. The Orders::CreateService example declares a payment_gateway dependency, lists "Charges payment method" as a side effect, and calls payment_gateway.charge(amount: ..., payment_method_id: ...) to process payment (and a payments/charge_service.rb is referenced). This is a specific payment-gateway integration (i.e., direct financial execution), not a generic capability like a generic HTTP caller or browser automation.
Audit Metadata